Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-2208 | Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard. |
Thu, 17 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung
Samsung galaxy Store |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Samsung
Samsung galaxy Store |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 04 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 04 Feb 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2025-02-04T16:19:16.266Z
Reserved: 2024-11-06T02:30:14.837Z
Link: CVE-2025-20895
Updated: 2025-02-04T16:19:02.732Z
Status : Analyzed
Published: 2025-02-04T08:15:30.827
Modified: 2025-07-17T20:05:48.647
Link: CVE-2025-20895
No data.
OpenCVE Enrichment
No data.
EUVD