CVE-2023-42548: Samsung Account

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.

Affected products

  • Samsung Account: before 14.5.00.7 (fixed in 14.5.00.7)

Published 2023-11-07. Last modified 2026-06-17.