Improper access control in Samsung Notes prior to version 4.4.30.63 allows local privileged attackers to access exported note files. User interaction is required for triggering this vulnerability.
History

Wed, 03 Sep 2025 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung notes
Vendors & Products Samsung
Samsung notes

Wed, 03 Sep 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 03 Sep 2025 06:15:00 +0000

Type Values Removed Values Added
Description Improper access control in Samsung Notes prior to version 4.4.30.63 allows local privileged attackers to access exported note files. User interaction is required for triggering this vulnerability.
References
Metrics cvssV3_1

{'score': 5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: SamsungMobile

Published: 2025-09-03T06:05:41.363Z

Updated: 2025-09-03T16:00:28.873Z

Reserved: 2024-11-06T02:30:14.886Z

Link: CVE-2025-21036

cve-icon Vulnrichment

Updated: 2025-09-03T15:54:44.220Z

cve-icon NVD

Status : Received

Published: 2025-09-03T06:15:48.800

Modified: 2025-09-03T06:15:48.800

Link: CVE-2025-21036

cve-icon Redhat

No data.