VYPR

SecSettings

by Samsung Mobile

CVEs (6)

  • CVE-2021-25393MedJun 11, 2021
    risk 0.43cvss 6.6epss 0.00

    Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data.

  • CVE-2023-21474MedSep 3, 2025
    risk 0.41cvss 6.3epss 0.00

    Intent redirection vulnerability in SecSettings prior to SMR Apr-2022 Release 1 allows attackers to access arbitrary file with system privilege.

  • CVE-2026-20969MedJan 9, 2026
    risk 0.36cvss 5.5epss 0.00

    Improper input validation in SecSettings prior to SMR Jan-2026 Release 1 allows local attacker to access file with system privilege. User interaction is required for triggering this vulnerability.

  • CVE-2025-21049MedOct 10, 2025
    risk 0.36cvss 5.5epss 0.00

    Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.

  • CVE-2023-21460MedMar 16, 2023
    risk 0.29cvss 4.4epss 0.00

    Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.

  • CVE-2022-22263MedJan 10, 2022
    risk 0.26cvss 4.0epss 0.00

    Unprotected dynamic receiver in SecSettings prior to SMR Jan-2022 Release 1 allows untrusted applications to launch arbitrary activity.