mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 04:38:03 +02:00
19 lines
906 B
Markdown
19 lines
906 B
Markdown
### [CVE-2021-25381](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-25381)
|
|

|
|
%20and%20below%20&color=brightgreen)
|
|
%20and%20above%20&color=brightgreen)
|
|

|
|
|
|
### Description
|
|
|
|
Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://security.samsungmobile.com/serviceWeb.smsb
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|