Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2016-4038
Array index error in the msm_sensor_config function in kernel/SM-G9008V_CHN_KK_Opensource/Kernel/drivers/media/platform/msm/camera_v2/sensor/msm_sens…
Samsung Mobile
Mitigation only
CRITICAL 9.8
CVE-2016-6604
NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows attackers to have unspecified impact via unknown ve…
Exynos Fimg2d
Mitigation only
MEDIUM 5.5
CVE-2016-1920
Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installin…
Knox
Mitigation only
MEDIUM 5.5
CVE-2016-3996
ClipboardDataMgr in Samsung KNOX 1.0.0 and 2.3.0 does not properly check the caller, which allows local users to read KNOX clipboard data via a craft…
Knox
No fix yet
HIGH 7.5
CVE-2016-9279
Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows attackers to obtain sens…
Exynos Fimg2d Driver
Mitigation only
MEDIUM 5.5
CVE-2016-9278
The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local users to cause a denial of service (kernel panic) …
Exynos Fimg2d Driver
Mitigation only
HIGH 7.8
CVE-2016-6526
The SpamCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (cr…
Samsung Mobile
Mitigation only
HIGH 7.8
CVE-2016-6527
The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to cause a denial of service (c…
Samsung Mobile
Mitigation only
HIGH 7.5
CVE-2017-5350
Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allow attackers to crash systemUI by leveraging incomplete exception handling. The …
Samsung Mobile
Mitigation only
HIGH 7.5
CVE-2017-5351
Samsung Note devices with KK(4.4), L(5.0/5.1), and M(6.0) software allow attackers to crash the system by creating an arbitrarily large number of act…
Samsung Mobile
Mitigation only
MEDIUM 5.5
CVE-2017-5217
Installing a zero-permission Android application on certain Samsung Android devices with KK(4.4), L(5.0/5.1), and M(6.0) software can continually cra…
Samsung Mobile
Mitigation only
CRITICAL 9.8
CVE-2016-9965
Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…
Samsung Mobile
Mitigation only
CRITICAL 9.8
CVE-2016-9966
Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…
Samsung Mobile
Mitigation only
CRITICAL 9.8
CVE-2016-9967
Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) softw…
Samsung Mobile
Mitigation only
MEDIUM 5.5
CVE-2016-9567
The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restrict setmDNIeScreenCurtain API calls, enabling attac…
Samsung Mobile
Mitigation only
HIGH 7.5
CVE-2016-9277
Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors…
Samsung Mobile
Mitigation only
HIGH 7.5
CVE-2016-7160
A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activities is not properly restricted, leading to a Syste…
Samsung Mobile
Mitigation only
MEDIUM 6.5
CVE-2016-1308
SQL injection vulnerability in Cisco Unified Communications Manager 10.5(2.13900.9) allows remote authenticated users to execute arbitrary SQL comman…
X14j Firmware
Mitigation only
HIGH 7.5
CVE-2015-7897EPSS 7%
The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge before G925VVRU4B0G9 allows remot…
Galaxy S6
No fix yet
MEDIUM 6.8
CVE-2015-8040
The rtsp_getdlsendtime method in the CNC_Ctrl control in Samsung SmartViewer allows remote attackers to execute arbitrary code via an index value.
Smartviewer
Mitigation only
MEDIUM 6.8
CVE-2015-8039
Samsung SmartViewer allows remote attackers to execute arbitrary code via unspecified vectors to the (1) DVRSetupSave method in the STWAxConfig contr…
Smartviewer
Mitigation only
HIGH 7.9
CVE-2015-4034
The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung Galaxy S5s allows remote attackers to execute arbitra…
Galaxy S5
Mitigation only
MEDIUM 6.8
CVE-2015-0555EPSS 6%
Buffer overflow in the XnsSdkDeviceIpInstaller.ocx ActiveX control in Samsung iPOLiS Device Manager 1.12.2 allows remote attackers to execute arbitra…
Ipolis Device Manager
No fix yet
MEDIUM 6.8
CVE-2014-9266
The STWConfig ActiveX control in Samsung SmartViewer does not properly initialize a variable, which allows remote attackers to execute arbitrary code…
Smart Viewer
Mitigation only
MEDIUM 6.8
CVE-2014-9265
Stack-based buffer overflow in the BackupToAvi method in the CNC_Ctrl ActiveX control in Samsung SmartViewer allows remote attackers to execute arbit…
Smartviewer
Mitigation only
HIGH 7.8
CVE-2014-8346
The Remote Controls feature on Samsung mobile devices does not validate the source of lock-code data received over a network, which makes it easier f…
Findmymobile
No fix yet
HIGH 7.6
CVE-2013-3586EPSS 11%
Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.
Smart Viewer
Mitigation only
MEDIUM 5.0
CVE-2013-3585EPSS 24%
Samsung Web Viewer for Samsung DVR devices stores credentials in cleartext, which allows context-dependent attackers to obtain sensitive information …
Smart Viewer
Mitigation only
HIGH 7.8
CVE-2013-4890
The DMCRUIS/0.1 web server on the Samsung PS50C7700 TV allows remote attackers to cause a denial of service (daemon crash) via a long URI to TCP port…
Ps50c7700 Television Firmware
No fix yet
MEDIUM 5.0
CVE-2012-5859
Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws…
Kies Air
No fix yet