Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-20966


Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.


Published

2025-05-07T09:15:16.890

Last Modified

2026-01-30T21:18:51.750

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.6 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application samsung gallery < 14.5.10.3 Yes
Operating System samsung android 13.0 No
Application samsung gallery < 14.5.09.3 Yes
Operating System samsung android 13.0 No
Application samsung gallery < 15.5.04.5 Yes
Operating System samsung android 14.0 No

References