PT-2025-4188 · Samsung · Samsung Find

Hsia.Angsh

·

Published

2025-02-04

·

Updated

2025-02-12

·

CVE-2025-20907

CVSS v3.1

6.0

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Samsung Find versions prior to SMR Feb-2025 Release 1
Description The issue is related to improper privilege management, allowing local privileged attackers to disable Samsung Find. This can be exploited by attackers with local access and sufficient privileges.
Recommendations For Samsung Find versions prior to SMR Feb-2025 Release 1, update to SMR Feb-2025 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting local access to the device and limiting privileges to minimize the risk of exploitation.

Fix

Related Identifiers

CVE-2025-20907

Affected Products

Samsung Find