Samsung Account (AKA com.osp.app.signin) before 1.6.0069 and 2.x before 2.1.0069 allows man-in-the-middle attackers to obtain sensitive information and execute arbitrary code.
2017-03-27T17:59:00.227
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 8.0 (HIGH)
AV:A/AC:M/Au:N/C:C/I:C/A:C
5.5
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | samsung | galaxy_app | - | Yes |
Application | samsung | samsung_account_app | - | Yes |