CVE-2025-21019

Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this vulnerability.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:health:*:*:*:*:*:*:*:*

History

15 Aug 2025, 16:01

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=08 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=08 - Vendor Advisory
First Time Samsung health
Samsung
CPE cpe:2.3:a:samsung:health:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

06 Aug 2025, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-06 05:15

Updated : 2025-08-15 16:01


NVD link : CVE-2025-21019

Mitre link : CVE-2025-21019


JSON object : View

Products Affected

samsung

  • health