CVE-2024-20871: Samsung One UI
Medium severity, CVSS 4.6. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper authorization vulnerability in Samsung Keyboard prior to version One UI 5.1.1 allows physical attackers to partially bypass the factory reset protection.
Affected products
- Samsung One UI: before 5.1.1 (fixed in 5.1.1)
Published 2024-05-07. Last modified 2026-06-17.