CVE-2025-20996 Information

Description

Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability.

Reference

https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=06

Share on: