Vulnerability Details CVE-2025-20951
Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.90.7 allows local attackers to write arbitrary files with the privilege of Galaxy Store.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 4.0%
CVSS Severity
CVSS v3 Score 5.1
Products affected by CVE-2025-20951
-
cpe:2.3:a:samsung:galaxy_store:-
-
cpe:2.3:a:samsung:galaxy_store:4.5.32.4
-
cpe:2.3:a:samsung:galaxy_store:4.5.36.4
-
cpe:2.3:a:samsung:galaxy_store:4.5.41.8
-
cpe:2.3:a:samsung:galaxy_store:4.5.63.6
-
cpe:2.3:a:samsung:galaxy_store:4.5.64.4
-
cpe:2.3:a:samsung:galaxy_store:4.5.81.0