Vulnerability Details CVE-2026-20975
Improper handling of insufficient permission in Samsung Cloud prior to version 5.6.11 allows local attackers to access specific files in arbitrary path.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.9%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2026-20975
-
cpe:2.3:a:samsung:cloud:-
-
cpe:2.3:a:samsung:cloud:4.7.0.3
-
cpe:2.3:a:samsung:cloud:5.1.0.8
-
cpe:2.3:a:samsung:cloud:5.2.00.7