Samsung DeX Improper Access Control Vulnerability in WindowManager

Vulnerability

A vulnerability exists in the WindowManager component of Samsung DeX, in versions prior to the October 2025 Security Maintenance Release. This vulnerability allows physical attackers to temporarily access the recent app list, due to improper access control.

Impact

Exploitation of this vulnerability could lead to unauthorized access to the recent app list, potentially allowing attackers to view and interact with recently used applications.

Remediation

Users can update to the October 2025 Security Maintenance Release to address this vulnerability.

Added: Oct 10, 2025, 7:30 AM
Updated: Oct 10, 2025, 7:30 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.0
exploitability
3.3
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.