CVE Vulnerabilities

CVE-2025-20951

Published: Apr 08, 2025 | Modified: Jul 17, 2025
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.90.7 allows local attackers to write arbitrary files with the privilege of Galaxy Store.

Affected Software

NameVendorStart VersionEnd Version
Galaxy_storeSamsung*4.5.90.7 (excluding)

References