VYPR

imsservice

by Samsung Mobile

CVEs (7)

  • CVE-2025-21031MedSep 3, 2025
    risk 0.44cvss 6.8epss 0.00

    Improper access control in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to use the privileged APIs.

  • CVE-2025-21027MedSep 3, 2025
    risk 0.33cvss 5.1epss 0.00

    Improper verification of intent by broadcast receiver in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to temporarily disable the SIM.

  • CVE-2025-21026MedSep 3, 2025
    risk 0.26cvss 4.0epss 0.00

    Improper handling of insufficient permission in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to interrupt the call.

  • CVE-2024-20899MedJul 2, 2024
    risk 0.26cvss 4.0epss 0.00

    Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

  • CVE-2024-20897MedJul 2, 2024
    risk 0.26cvss 4.0epss 0.00

    Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows local attackers to get sensitive information.

  • CVE-2022-39856MedOct 7, 2022
    risk 0.26cvss 4.0epss 0.00

    Improper access control vulnerability in imsservice application prior to SMR Oct-2022 Release 1 allows local attackers to access call information.

  • CVE-2022-25833LowApr 11, 2022
    risk 0.21cvss 3.3epss 0.00

    Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.