CyberRota Analysis
AI-GeneratedImproper input validation in Samsung Contacts prior to the August 2026 SMR Release 1 enables physical attackers to exploit this vulnerability, potentially gaining unauthorized access to data across multiple user profiles. Organizations using affected Samsung devices should prioritize this issue to mitigate risks associated with unauthorized data access. Users with physical access to these devices are particularly at risk.
CVE
CVE-2026-21060
Severity
MEDIUM
CVSS
6.7
EPSS
0.15%
Original NVD Description
Improper input validation in Samsung Contacts prior to SMR Aug-2026 Release 1 allows physical attackers to access data across multiple user profiles.