mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-27 10:22:48 +02:00
18 lines
833 B
Markdown
18 lines
833 B
Markdown
### [CVE-2021-25403](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-25403)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=5
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|