CVE-2024-49421: Samsung Quick Share

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Path traversal in Quick Share Agent prior to version 3.5.14.47 in Android 12, 3.5.19.41 in Android 13, and 3.5.19.42 in Android 14 allows adjacent attackers to write file in arbitrary location.

Affected products

  • Samsung Quick Share: before 3.5.19.41 (fixed in 3.5.19.41); before 3.5.19.42 (fixed in 3.5.19.42); before 3.5.14.47 (fixed in 3.5.14.47)

Published 2024-12-03. Last modified 2026-06-17.