Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 05 Jun 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Code Execution via Improper Export of Samsung Assistant Widget | |
| Weaknesses | CWE-285 |
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script. | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2026-06-05T10:15:40.015Z
Reserved: 2025-12-11T01:33:35.806Z
Link: CVE-2026-21033
No data.
Status : Received
Published: 2026-06-05T11:16:35.897
Modified: 2026-06-05T11:16:35.897
Link: CVE-2026-21033
No data.
OpenCVE Enrichment
Updated: 2026-06-05T11:30:39Z
Weaknesses