Improper access control in SamsungAccount for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to access phone number.
References
| Link | Resource |
|---|---|
| https://security.samsungmobile.com/securityUpdate.smsb?year=2025&month=07 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2025-07-08 11:15
Updated : 2026-01-20 14:42
NVD link : CVE-2025-20998
Mitre link : CVE-2025-20998
CVE.ORG link : CVE-2025-20998
JSON object : View
Products Affected
samsung
- wear_os
- galaxy_watch_5_pro
- galaxy_watch_ultra
- galaxy_watch_5
- galaxy_watch_4_classic
- galaxy_watch_6_classic
- galaxy_watch
- galaxy_watch_4
- galaxy_watch_7
- galaxy_watch_fe
- galaxy_watch_6
CWE
