ZeroHour

CVE-2020-25048

CVSS 3.1
4.6 medium
EPSS
<1%p7
Published
()
Modified
Description

An issue was discovered on Samsung mobile devices with Q(10.0) (with ONEUI 2.1) software. In the Lockscreen state, the Quick Share feature allows unauthenticated downloads, aka file injection. The Samsung ID is SVE-2020-17760 (August 2020).

Vendors
google
Products
android
Weakness
CWE-306
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.