Improper access control in SettingsProvider prior to SMR Sep-2026 Release 1 allows local attackers to access sensitive information.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 09 Sep 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Access Control in SettingsProvider Allowing Local Information Disclosure | |
| Weaknesses | CWE-284 |
Wed, 09 Sep 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access control in SettingsProvider prior to SMR Sep-2026 Release 1 allows local attackers to access sensitive information. | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2026-09-09T04:47:47.822Z
Reserved: 2025-12-11T01:33:35.829Z
Link: CVE-2026-21099
No data.
Status : Awaiting Analysis
Published: 2026-09-09T05:17:22.137
Modified: 2026-09-09T15:45:14.503
Link: CVE-2026-21099
No data.
OpenCVE Enrichment
Updated: 2026-09-09T11:15:10Z
Weaknesses