PT-2026-25597 · Samsung · Samsung Mobile Devices+1

Tron

·

Published

2026-03-16

·

Updated

2026-03-17

·

CVE-2026-20992

CVSS v4.0

4.8

Medium

VectorAV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Samsung Settings versions prior to SMR Mar-2026 Release 1
Description An improper authorization issue exists in Samsung Settings prior to SMR Mar-2026 Release 1. This allows a local attacker to disable configuring the background data usage of an application. The issue involves authorization flaws within the Settings application.
Recommendations Update Samsung Settings to SMR Mar-2026 Release 1 or later.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-20992

Affected Products

Samsung Mobile Devices
Android