Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 09 Apr 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Galaxy Store Improper Signature Verification Enabling Arbitrary App Installation |
Wed, 08 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Cryptographic Signature Verification in Galaxy Store Enables Local App Installation | |
| Weaknesses | CWE-330 |
Tue, 07 Apr 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-347 | |
| CPEs | cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Fri, 27 Mar 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Cryptographic Signature Verification in Galaxy Store Enables Local App Installation | |
| Weaknesses | CWE-330 |
Fri, 27 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Attackers Can Install Arbitrary Applications Due to Signature Verification Flaw in Galaxy Store | |
| Weaknesses | CWE-287 |
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Attackers Can Install Arbitrary Applications Due to Signature Verification Flaw in Galaxy Store | |
| Weaknesses | CWE-287 |
Thu, 26 Mar 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Attacker Can Install Arbitrary Apps via Signature Verification Failure in Samsung Galaxy Store | |
| Weaknesses | CWE-327 |
Thu, 26 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Attacker Can Install Arbitrary Apps via Signature Verification Failure in Samsung Galaxy Store | |
| Weaknesses | CWE-327 |
Wed, 25 Mar 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Verification of Cryptographic Signature in Samsung Galaxy Store Allowing Local Installation of Arbitrary Apps | |
| Weaknesses | CWE-294 |
Wed, 25 Mar 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Verification of Cryptographic Signature in Samsung Galaxy Store Allowing Local Installation of Arbitrary Apps | |
| Weaknesses | CWE-294 |
Wed, 25 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Cryptographic Signature Verification in Samsung Galaxy Store Enables Local App Installation | |
| Weaknesses | CWE-287 |
Tue, 24 Mar 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Cryptographic Signature Verification in Samsung Galaxy Store Enables Local App Installation | |
| Weaknesses | CWE-287 |
Tue, 17 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung
Samsung galaxy Store |
|
| Vendors & Products |
Samsung
Samsung galaxy Store |
Mon, 16 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 16 Mar 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper verification of cryptographic signature in Galaxy Store prior to version 4.6.03.8 allows local attacker to install arbitrary application. | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2026-03-16T13:59:29.066Z
Reserved: 2025-12-11T01:33:35.802Z
Link: CVE-2026-21002
Updated: 2026-03-16T13:59:26.437Z
Status : Analyzed
Published: 2026-03-16T14:18:11.367
Modified: 2026-04-07T00:34:23.430
Link: CVE-2026-21002
No data.
OpenCVE Enrichment
Updated: 2026-04-09T08:29:46Z