CVE-2025-20926
CVE-2025-20926
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.5EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
06 Mar 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper export of Android application components in My Files prior to version 15.0.07.5 in Android 14 allows local attackers to access files with My Files' privilege.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected products
Samsung Mobile · Samsung My FilesWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →