Samsung Account Improper Privilege Management Vulnerability Allowing Account Deactivation

Vulnerability

A vulnerability exists in Samsung Account services on devices running Android versions 13, 14, 15, and 16. Prior to the August 2025 Security Maintenance Release, this vulnerability allowed local privileged attackers to deactivate a Samsung account by exploiting improper privilege management. The issue has been addressed in the August 2025 Release 1 update.

Impact

Exploitation of this vulnerability allows local privileged attackers to deactivate a Samsung account, potentially disrupting services and access associated with the account.

Remediation

Users can apply the August 2025 Security Maintenance Release to address this vulnerability. This update is part of the monthly security update process and includes patches from both Google and Samsung.

Added: Aug 6, 2025, 5:59 AM
Updated: Aug 6, 2025, 5:59 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
2.8
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.