Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.
Metrics
Affected Vendors & Products
References
History
Fri, 07 Nov 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:samsung:smart_switch:*:*:*:*:*:*:*:* |
Thu, 06 Nov 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung
Samsung smart Switch |
|
| Vendors & Products |
Samsung
Samsung smart Switch |
Wed, 05 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 05 Nov 2025 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SamsungMobile
Published: 2025-11-05T05:41:00.294Z
Updated: 2025-11-06T04:55:33.954Z
Reserved: 2024-11-06T02:30:14.896Z
Link: CVE-2025-21078
Updated: 2025-11-05T17:14:44.892Z
Status : Analyzed
Published: 2025-11-05T06:15:34.103
Modified: 2025-11-07T15:46:38.130
Link: CVE-2025-21078
No data.