HIGH
CVE-2021-25337
CVSS
7.1
KEV
Description
Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.
Summary dbcve.org
This is an improper access control vulnerability in Samsung's clipboard service on mobile devices. The flaw allows untrusted or malicious applications to bypass normal Android sandboxing and read or write certain local files that should be protected. This could enable data theft or manipulation of sensitive files through clipboard interactions.
Mitigation
Apply the Samsung SMR Mar-2021 Release 1 or later security update to affected devices. For enterprise environments, ensure MDM/EMM solutions are deployed to identify and remediate unpatched Samsung devices.
Weakness (CWE)
CWE-269
Improper Privilege Management
EPSS Score
2.81%
Probability of exploitation in next 30 days
85.9th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.