CVE Feed

    Dashboard / CVE / CVE-2021-25424

    CVE-2021-25424

    Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the user's bluetooth device without user awareness.

    Published:Jun 11, 2021
    Last Modified:Nov 21, 2024
    EPS:Jun 11, 2021
    EPSS Score:0.00111
    CVSS Score:8.8

    Affected Products

    Vendor
    Samsung
    Product
    Galaxy Watch
    Vendor
    Samsung
    Product
    Galaxy Watch 3
    Vendor
    Samsung
    Product
    Galaxy Watch 3 Firmware
    Vendor
    Samsung
    Product
    Galaxy Watch Active
    Vendor
    Samsung
    Product
    Galaxy Watch Active 2
    Vendor
    Samsung
    Product
    Galaxy Watch Active 2 Firmware
    Vendor
    Samsung
    Product
    Galaxy Watch Active Firmware
    Vendor
    Samsung
    Product
    Galaxy Watch Firmware
    Vendor
    Samsung
    Product
    Gear 2
    Vendor
    Samsung
    Product
    Gear 2 Firmware
    Vendor
    Samsung
    Product
    Gear 2 Neo
    Vendor
    Samsung
    Product
    Gear 2 Neo Firmware
    Vendor
    Samsung
    Product
    Gear S
    Vendor
    Samsung
    Product
    Gear S2
    Vendor
    Samsung
    Product
    Gear S2 Firmware
    Vendor
    Samsung
    Product
    Gear S3
    Vendor
    Samsung
    Product
    Gear S3 Firmware
    Vendor
    Samsung
    Product
    Gear S Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High