CVE-2017-18680: Google Android

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) (tablets) software. The lockscreen interface allows Add User actions, leading to an unintended ability to access user data in external storage. The Samsung ID is SVE-2016-7797 (March 2017).

Affected products

  • Google Android: version 5.0 only; version 5.1 only; version 6.0 only

Published 2020-04-07. Last modified 2026-06-17.