PT-2026-46922 · Samsung · Samsung Assistant
CVE-2026-21032
·
Published
2026-06-05
·
Updated
2026-06-11
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Samsung Assistant versions prior to 9.3.14
Description
Improper export of android application components in the
SmartHomeWidgetReceiver allows a local attacker to execute arbitrary scripts via intent redirection. Intent redirection occurs when an application accepts an intent from an untrusted source and uses it to launch another component, potentially bypassing security restrictions.Recommendations
Update to version 9.3.14 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Samsung Assistant