Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1324 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-42534 1 Samsung 1 Android 2023-11-13 N/A 5.5 MEDIUM
Improper input validation vulnerability in ChooserActivity prior to SMR Nov-2023 Release 1 allows local attackers to read arbitrary files with system privilege.
CVE-2023-42535 1 Samsung 1 Android 2023-11-13 N/A 7.8 HIGH
Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-42532 1 Samsung 1 Android 2023-11-13 N/A 7.5 HIGH
Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the network traffic including Firmware information.
CVE-2023-42529 1 Samsung 1 Android 2023-11-13 N/A 7.8 HIGH
Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-42530 1 Samsung 1 Android 2023-11-13 N/A 7.5 HIGH
Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi and Wi-Fi Direct without User Interaction.
CVE-2023-42528 1 Samsung 1 Android 2023-11-13 N/A 7.8 HIGH
Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-42527 1 Samsung 1 Android 2023-11-13 N/A 5.5 MEDIUM
Improper input validation vulnerability in ProcessWriteFile of libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to expose sensitive information.
CVE-2023-30719 1 Samsung 1 Android 2023-11-07 N/A 3.3 LOW
Exposure of Sensitive Information vulnerability in InboundSmsHandler prior to SMR Sep-2023 Release 1 allows local attackers to access certain message data.
CVE-2023-30723 1 Samsung 1 Health 2023-11-07 N/A 9.8 CRITICAL
Improper input validation vulnerability in Samsung Health prior to version 6.24.2.011 allows attackers to write arbitrary file with Samsung Health privilege.
CVE-2023-30731 1 Samsung 1 Android 2023-11-07 N/A 4.6 MEDIUM
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
CVE-2023-30726 1 Samsung 1 Gamelauncher 2023-11-07 N/A 5.5 MEDIUM
PendingIntent hijacking vulnerability in GameLauncher prior to version 4.2.59.5 allows local attackers to access data.
CVE-2023-30717 1 Samsung 1 Android 2023-11-07 N/A 3.3 LOW
Sensitive information exposure vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to get unresettable identifiers.
CVE-2023-30720 1 Samsung 1 Android 2023-11-07 N/A 5.5 MEDIUM
PendingIntent hijacking in LmsAssemblyTrackerCTC prior to SMR Sep-2023 Release 1 allows local attacker to gain arbitrary file access.
CVE-2023-30735 1 Samsung 1 Sassistant 2023-11-07 N/A 3.3 LOW
Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access backup data in SAssistant.
CVE-2023-30737 1 Samsung 1 Health 2023-11-07 N/A 5.5 MEDIUM
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
CVE-2023-30736 1 Samsung 1 Samsung Assistant 2023-11-07 N/A 5.4 MEDIUM
Improper authorization in PushMsgReceiver of Samsung Assistant prior to version 8.7.00.1 allows attacker to execute javascript interface. To trigger this vulnerability, user interaction is required.
CVE-2023-30730 2 Google, Samsung 2 Android, Camera 2023-11-07 N/A 5.5 MEDIUM
Implicit intent hijacking vulnerability in Camera prior to versions 11.0.16.43 in Android 11, 12.1.00.30, 12.0.07.53, 12.1.03.10 in Android 12, and 13.0.01.43, 13.1.00.83 in Android 13 allows local attacker to access specific file.
CVE-2023-30721 1 Samsung 1 Android 2023-11-07 N/A 4.4 MEDIUM
Insertion of sensitive information into log vulnerability in Locksettings prior to SMR Sep-2023 Release 1 allows a privileged local attacker to get lock screen match information from the log.
CVE-2023-30732 1 Samsung 1 Android 2023-11-07 N/A 3.3 LOW
Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial number.
CVE-2023-30728 1 Samsung 1 Packageinstallerchn 2023-11-07 N/A 5.5 MEDIUM
Intent redirection vulnerability in PackageInstallerCHN prior to version 13.1.03.00 allows local attacker to access arbitrary file. This vulnerability requires user interaction.