CVE-2024-20802: Samsung Dex

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper access control vulnerability in Samsung DeX prior to SMR Jan-2024 Release 1 allows owner to access other users' notification in a multi-user environment.

Affected products

  • Samsung Dex: before smr_jan-2024_release_1 (fixed in smr_jan-2024_release_1)

Published 2024-01-04. Last modified 2026-06-17.