HIGH

CVE-2021-25337

Samsung Android 2021-03-04 CVSS v3.1
CVSS
7.1
KEV

Description

Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.

Summary dbcve.org

This is an improper access control vulnerability in Samsung's clipboard service on mobile devices. The flaw allows untrusted or malicious applications to bypass normal Android sandboxing and read or write certain local files that should be protected. This could enable data theft or manipulation of sensitive files through clipboard interactions.

Mitigation

Apply the Samsung SMR Mar-2021 Release 1 or later security update to affected devices. For enterprise environments, ensure MDM/EMM solutions are deployed to identify and remediate unpatched Samsung devices.

Weakness (CWE)

CWE-269 Improper Privilege Management

EPSS Score

2.81%
Probability of exploitation in next 30 days
85.9th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE