Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2786 articles · 110197 vulns · 38/41 feeds (7d)
← Back to list
6.6
CVE-2026-21010PATCHED
Samsung Mobile · Samsung Mobile Devices

CVE-2026-21010: Improper input validation in Retail Mode prior to SMR Apr-2026 Release 1 allows local attackers to trigger privileged fu

Description

Improper input validation in Retail Mode prior to SMR Apr-2026 Release 1 allows local attackers to trigger privileged functions.

Affected Products

VendorProductVersions
Samsung MobileSamsung Mobile Devices—

References

  • https://security.samsungmobile.com/securityUpdate.smsb?year=2026&month=04

Related News (1 articles)

Tier C
VulDB7h ago
CVE-2026-21010 | Samsung Devices Retail Mode input validation
→ No new info (linked only)
CVSS 3.16.6 MEDIUM
VectorCVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
SMR Apr-2026 Release in Android 141516
PublishedApr 13, 2026
Last enriched7h ago
Trending Score23
Source articles1
Independent1
Info Completeness7/14
Missing: versions, epss, cwe, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-21003
CVE-2026-21003: Improper input validation in data related to network restrictions prior to SMR Apr-2026 Release 1 allows physical attack
Trending: 29
NONECVE-2026-21014
CVE-2026-21014: Improper access control in Samsung Camera prior to version 16.5.00.28 allows local attacker to access location data. Use
Trending: 20
NONECVE-2026-21012
CVE-2026-21012: External control of file name in AODManager prior to SMR Apr-2026 Release 1 allows privileged local attacker to create f
Trending: 20
NONECVE-2026-21009
CVE-2026-21009: Improper check for exceptional conditions in Recents prior to SMR Apr-2026 Release 1 allows physical attacker to bypass
Trending: 20
NONECVE-2026-21007
CVE-2026-21007: Improper check for exceptional conditions in Device Care prior to SMR Apr-2026 Release 1 allows physical attackers to by
Trending: 20

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Apr 13, 2026
Discovered by ZDM
Apr 13, 2026
Patch Available
Apr 13, 2026