SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-21112

MEDIUM · CVSS 5.1 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

Improper input validation in Samsung Tips on affected Android versions allows local attackers to exploit this vulnerability and execute arbitrary activities with elevated privileges. User interaction is required to trigger the exploit, which poses a risk primarily to users of Samsung devices running the vulnerable software. Organizations managing Android devices, particularly those in environments with sensitive data, should prioritize patching this issue to mitigate potential local attacks.

CVE
CVE-2026-21112
Severity
MEDIUM
CVSS
5.1
EPSS
0.10%
Android

Original NVD Description

Improper input validation in Samsung Tips prior to Android 17 allows local attackers to launch arbitrary activity with Samsung Tips privilege. User interaction is required for triggering this vulnerability.