CVE-2026-21037
Improper Input Validation in Samsung Members
Publication date: 2026-06-05
Last updated on: 2026-06-05
Assigner: Samsung Mobile
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| samsung | samsung_members | 5.8.01.5 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is caused by improper input validation in the Samsung Members application prior to version 5.8.01.5.
It allows local attackers to access arbitrary URLs and launch arbitrary activities with the privileges of the Samsung Members app.
How can this vulnerability impact me? :
An attacker with local access could exploit this vulnerability to perform unauthorized actions within the Samsung Members app.
This could lead to launching arbitrary activities or accessing URLs that the attacker should not be able to, potentially compromising device security or user data.