PT-2025-9883 · Samsung · Diagmonagent

Localh0Ster

·

Published

2025-03-06

·

Updated

2026-02-02

·

CVE-2025-20912

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions DiagMonAgent versions prior to SMR Mar-2025 Release 1
Description The issue is related to an incorrect default permission in DiagMonAgent, allowing local attackers to access data within Galaxy Watch.
Recommendations For versions prior to SMR Mar-2025 Release 1, update to SMR Mar-2025 Release 1 or later to resolve the issue.

Fix

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-20912

Affected Products

Diagmonagent