Vulnerability Database

308,681

Total vulnerabilities in the database

CVE-2025-21028

Improper privilege management in ThemeManager prior to SMR Sep-2025 Release 1 allows local privileged attackers to reuse trial items.

  • Published: Sep 3, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-21028
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

No CWE or OWASP classifications available.

Software From Fixed in
samsung / android 15.0 15.0.x
samsung / android 15.0-smr-apr-2025-r1 15.0-smr-apr-2025-r1.x
samsung / android 15.0-smr-aug-2025-r1 15.0-smr-aug-2025-r1.x
samsung / android 15.0-smr-jul-2025-r1 15.0-smr-jul-2025-r1.x
samsung / android 15.0-smr-jun-2025-r1 15.0-smr-jun-2025-r1.x
samsung / android 15.0-smr-mar-2025-r1 15.0-smr-mar-2025-r1.x
samsung / android 15.0-smr-may-2025-r1 15.0-smr-may-2025-r1.x
samsung / android 16.0 16.0.x
samsung / android 16.0-smr-aug-2025-r1 16.0-smr-aug-2025-r1.x