Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-20984


Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to access data in Samsung Cloud for Galaxy Watch.


Published

2025-06-04T05:15:23.213

Last Modified

2026-02-02T18:14:48.820

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.8 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-276

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System samsung wear_os 5.0 Yes
Hardware samsung galaxy_watch - No
Hardware samsung galaxy_watch_4 - No
Hardware samsung galaxy_watch_4_classic - No
Hardware samsung galaxy_watch_5 - No
Hardware samsung galaxy_watch_5_pro - No
Hardware samsung galaxy_watch_6 - No
Hardware samsung galaxy_watch_6_classic - No
Hardware samsung galaxy_watch_7 - No
Hardware samsung galaxy_watch_fe - No
Hardware samsung galaxy_watch_ultra - No

References