Samsung MotionPhoto Improper Access Control Vulnerability in MPLocalService

Vulnerability

A vulnerability exists in the MotionPhoto application, specifically in the MPLocalService component, prior to version 4.1.51. This vulnerability allows local attackers to initiate privileged services due to improper access control. The issue has been acknowledged by a researcher from the Shuffle Team.

Impact

Exploitation of this vulnerability could lead to unauthorized initiation of privileged services, potentially allowing local attackers to perform actions or access resources that are normally restricted.

Remediation

Users can update to MotionPhoto version 4.1.51 or later to address this vulnerability.

Added: Dec 2, 2025, 2:19 AM
Updated: Dec 2, 2025, 2:19 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
3.3
remediation
7.7
relevance
1.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.