Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Jul 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Samsung
Samsung galaxy Store |
|
Weaknesses | NVD-CWE-Other | |
CPEs | cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:* | |
Vendors & Products |
Samsung
Samsung galaxy Store |
Tue, 15 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 04 Feb 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 04 Feb 2025 07:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard. | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: SamsungMobile
Published: 2025-02-04T07:19:42.808Z
Updated: 2025-02-04T16:19:16.266Z
Reserved: 2024-11-06T02:30:14.837Z
Link: CVE-2025-20895

Updated: 2025-02-04T16:19:02.732Z

Status : Analyzed
Published: 2025-02-04T08:15:30.827
Modified: 2025-07-17T20:05:48.647
Link: CVE-2025-20895

No data.