Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 13 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 13 May 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Arbitrary Code Execution via Improper Input Validation in Galaxy Watch FacAtFunction | |
| First Time appeared |
Samsung Mobile
Samsung Mobile samsung Mobile Devices |
|
| Weaknesses | CWE-20 | |
| Vendors & Products |
Samsung Mobile
Samsung Mobile samsung Mobile Devices |
Wed, 13 May 2026 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute arbitrary code with system privilege. | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: SamsungMobile
Published:
Updated: 2026-05-14T03:56:00.504Z
Reserved: 2025-12-11T01:33:35.804Z
Link: CVE-2026-21019
Updated: 2026-05-13T14:41:26.121Z
Status : Undergoing Analysis
Published: 2026-05-13T06:16:13.403
Modified: 2026-05-13T15:33:53.233
Link: CVE-2026-21019
No data.
OpenCVE Enrichment
Updated: 2026-05-13T07:30:25Z