Samsung Camera Missing Authorization Vulnerability Allowing Unauthorized Package Installation

Vulnerability

A missing authorization vulnerability has been identified in the Samsung Camera application, affecting versions prior to 11.1.02.18 on Android 11, 12.1.03.8 on Android 12, and 13.1.01.4 on Android 13. This vulnerability allows physical attackers to install packages through the Galaxy Store before the Setup Wizard is completed.

Impact

Exploitation of this vulnerability could lead to unauthorized package installations on the device.

Remediation

Users can update to Samsung Camera version 11.1.02.18 on Android 11, 12.1.03.8 on Android 12, or 13.1.01.4 on Android 13 to address this vulnerability.

Added: Sep 3, 2025, 6:26 AM
Updated: Sep 3, 2025, 6:26 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.0
exploitability
3.3
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.