Vulnerability index

Browse CVEs

727 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Samsung Mobile HIGH 7.8
CVE-2016-4038

Array index error in the msm_sensor_config function in kernel/SM-G9008V_CHN_KK_Opensource/Kernel/drivers/media/platform/msm/camera_v2/sensor/msm_sens…

Mitigation only
Fix from $1,950 2017-02-01
Exynos Fimg2d CRITICAL 9.8
CVE-2016-6604

NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows attackers to have unspecified impact via unknown ve…

Mitigation only
Fix from $2,300 2017-01-30
Knox MEDIUM 5.5
CVE-2016-1920

Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installin…

Mitigation only
Fix from $1,600 2017-01-27
Knox MEDIUM 5.5
CVE-2016-3996

ClipboardDataMgr in Samsung KNOX 1.0.0 and 2.3.0 does not properly check the caller, which allows local users to read KNOX clipboard data via a craft…

No fix yet
Fix from $1,600 2017-01-27
Exynos Fimg2d Driver HIGH 7.5
CVE-2016-9279

Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows attackers to obtain sens…

Mitigation only
Fix from $1,950 2017-01-18
Exynos Fimg2d Driver MEDIUM 5.5
CVE-2016-9278

The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local users to cause a denial of service (kernel panic) …

Mitigation only
Fix from $1,600 2017-01-18
Samsung Mobile HIGH 7.8
CVE-2016-6526

The SpamCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (cr…

Mitigation only
Fix from $1,950 2017-01-18
Samsung Mobile HIGH 7.8
CVE-2016-6527

The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (c…

Mitigation only
Fix from $1,950 2017-01-18
Samsung Mobile HIGH 7.5
CVE-2017-5350

Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allow attackers to crash systemUI by leveraging incomplete exception handling. The …

Mitigation only
Fix from $1,950 2017-01-12
Samsung Mobile HIGH 7.5
CVE-2017-5351

Samsung Note devices with KK(4.4), L(5.0/5.1), and M(6.0) software allow attackers to crash the system by creating an arbitrarily large number of act…

Mitigation only
Fix from $1,950 2017-01-12
Samsung Mobile MEDIUM 5.5
CVE-2017-5217

Installing a zero-permission Android application on certain Samsung Android devices with KK(4.4), L(5.0/5.1), and M(6.0) software can continually cra…

Mitigation only
Fix from $1,600 2017-01-09
Samsung Mobile CRITICAL 9.8
CVE-2016-9965

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…

Mitigation only
Fix from $2,300 2016-12-16
Samsung Mobile CRITICAL 9.8
CVE-2016-9966

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…

Mitigation only
Fix from $2,300 2016-12-16
Samsung Mobile CRITICAL 9.8
CVE-2016-9967

Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…

Mitigation only
Fix from $2,300 2016-12-16
Samsung Mobile MEDIUM 5.5
CVE-2016-9567

The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restrict setmDNIeScreenCurtain API calls, enabling attac…

Mitigation only
Fix from $1,600 2016-11-23
Samsung Mobile HIGH 7.5
CVE-2016-9277

Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors…

Mitigation only
Fix from $1,950 2016-11-11
Samsung Mobile HIGH 7.5
CVE-2016-7160

A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activities is not properly restricted, leading to a Syste…

Mitigation only
Fix from $1,950 2016-11-03
X14j Firmware MEDIUM 6.5
CVE-2016-1308

SQL injection vulnerability in Cisco Unified Communications Manager 10.5(2.13900.9) allows remote authenticated users to execute arbitrary SQL comman…

Mitigation only
Fix from $1,600 2016-02-07
Galaxy S6 HIGH 7.5
CVE-2015-7897EPSS 7%

The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge before G925VVRU4B0G9 allows remot…

No fix yet
Fix from $1,950 2015-11-16
Smartviewer MEDIUM 6.8
CVE-2015-8040

The rtsp_getdlsendtime method in the CNC_Ctrl control in Samsung SmartViewer allows remote attackers to execute arbitrary code via an index value.

Mitigation only
Fix from $1,600 2015-11-02
Smartviewer MEDIUM 6.8
CVE-2015-8039

Samsung SmartViewer allows remote attackers to execute arbitrary code via unspecified vectors to the (1) DVRSetupSave method in the STWAxConfig contr…

Mitigation only
Fix from $1,600 2015-11-02
Galaxy S5 HIGH 7.9
CVE-2015-4034

The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung Galaxy S5s allows remote attackers to execute arbitra…

Mitigation only
Fix from $1,950 2015-07-06
Ipolis Device Manager MEDIUM 6.8
CVE-2015-0555EPSS 6%

Buffer overflow in the XnsSdkDeviceIpInstaller.ocx ActiveX control in Samsung iPOLiS Device Manager 1.12.2 allows remote attackers to execute arbitra…

No fix yet
Fix from $1,600 2015-02-24
Smart Viewer MEDIUM 6.8
CVE-2014-9266

The STWConfig ActiveX control in Samsung SmartViewer does not properly initialize a variable, which allows remote attackers to execute arbitrary code…

Mitigation only
Fix from $1,600 2014-12-08
Smartviewer MEDIUM 6.8
CVE-2014-9265

Stack-based buffer overflow in the BackupToAvi method in the CNC_Ctrl ActiveX control in Samsung SmartViewer allows remote attackers to execute arbit…

Mitigation only
Fix from $1,600 2014-12-08
Findmymobile HIGH 7.8
CVE-2014-8346

The Remote Controls feature on Samsung mobile devices does not validate the source of lock-code data received over a network, which makes it easier f…

No fix yet
Fix from $1,950 2014-10-24
Smart Viewer HIGH 7.6
CVE-2013-3586EPSS 11%

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

Mitigation only
Fix from $1,950 2013-08-28
Smart Viewer MEDIUM 5.0
CVE-2013-3585EPSS 24%

Samsung Web Viewer for Samsung DVR devices stores credentials in cleartext, which allows context-dependent attackers to obtain sensitive information …

Mitigation only
Fix from $1,600 2013-08-28
Ps50c7700 Television Firmware HIGH 7.8
CVE-2013-4890

The DMCRUIS/0.1 web server on the Samsung PS50C7700 TV allows remote attackers to cause a denial of service (daemon crash) via a long URI to TCP port…

No fix yet
Fix from $1,950 2013-07-23
Kies Air MEDIUM 5.0
CVE-2012-5859

Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws…

No fix yet
Fix from $1,600 2012-12-03