Samsung Galaxy Store Authentication Bypass Vulnerability Allowing Arbitrary Application Installation

Vulnerability

An authentication bypass vulnerability has been identified in Samsung Galaxy Store versions prior to 4.5.87.6. This vulnerability allows physical attackers to install arbitrary applications, circumventing restrictions imposed by the Setup Wizard.

Impact

Exploitation of this vulnerability could lead to unauthorized application installations, bypassing standard setup restrictions.

Remediation

Users can update to Samsung Galaxy Store version 4.5.87.6 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.