Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Email HIGH 7.5
CVE-2023-30729

Improper Certificate Validation in Samsung Email prior to version 6.1.82.0 allows remote attacker to intercept the network traffic including sensitiv…

Fix: 6.1.82.0+
Fix from $1,950 2023-09-06
Gallery MEDIUM 5.5
CVE-2023-30725

Improper authentication in LocalProvier of Gallery prior to version 14.5.01.2 allows attacker to access the data in content provider.

Fix: 14.5.01.2+
Fix from $1,600 2023-09-06
Gamelauncher MEDIUM 5.5
CVE-2023-30726

PendingIntent hijacking vulnerability in GameLauncher prior to version 4.2.59.5 allows local attackers to access data.

Fix: 4.2.59.5+
Fix from $1,600 2023-09-06
Packageinstallerchn MEDIUM 5.5
CVE-2023-30728

Intent redirection vulnerability in PackageInstallerCHN prior to version 13.1.03.00 allows local attacker to access arbitrary file. This vulnerabilit…

Fix: 13.1.03.00+
Fix from $1,600 2023-09-06
Health CRITICAL 9.8
CVE-2023-30723

Improper input validation vulnerability in Samsung Health prior to version 6.24.2.011 allows attackers to write arbitrary file with Samsung Health pr…

Fix: 6.24.2.011+
Fix from $2,300 2023-09-06
Blockchain Keystore HIGH 7.8
CVE-2023-30722

Protection Mechanism Failure in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.13.5 allows local attacker to execute arbitrary…

Fix: 1.3.13.5+
Fix from $1,950 2023-09-06
Android MEDIUM 5.5
CVE-2023-30720

PendingIntent hijacking in LmsAssemblyTrackerCTC prior to SMR Sep-2023 Release 1 allows local attacker to gain arbitrary file access.

Mitigation only
Fix from $1,600 2023-09-06
Android MEDIUM 5.5
CVE-2023-30716

Improper access control vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to trigger certain commands.

No fix yet
Fix from $1,600 2023-09-06
Android HIGH 7.8
CVE-2023-30712

Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.

Mitigation only
Fix from $1,950 2023-09-06
Android MEDIUM 5.5
CVE-2023-30713

Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change som…

Mitigation only
Fix from $1,600 2023-09-06
Android HIGH 7.8
CVE-2023-30710

Improper input validation vulnerability in Knox AI prior to SMR Sep-2023 Release 1 allows local attackers to launch privileged activities.

Mitigation only
Fix from $1,950 2023-09-06
Android HIGH 7.5
CVE-2023-30708

Improper authentication in SecSettings prior to SMR Sep-2023 Release 1 allows attacker to access Captive Portal Wi-Fi in Reactivation Lock status.

Mitigation only
Fix from $1,950 2023-09-06
Android HIGH 7.1
CVE-2023-30707

Improper input validation vulnerability in FileProviderStatusReceiver in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows local attackers to d…

Mitigation only
Fix from $1,950 2023-09-06
Android MEDIUM 6.7
CVE-2023-30709

Improper access control in Dual Messenger prior to SMR Sep-2023 Release 1 allows local attackers launch activity with system privilege.

Mitigation only
Fix from $1,600 2023-09-06
Exynos 9810 Firmware HIGH 7.5
CVE-2023-36481

An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor 9810, 9610, 9820, 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, 911…

Mitigation only
Fix from $1,950 2023-08-28
Syncthru Web Service HIGH 7.5
CVE-2021-35309

An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MITM attacks.

No fix yet
Fix from $1,950 2023-08-22
Sww 3400rw Firmware MEDIUM 6.1
CVE-2020-22181

A reflected cross site scripting (XSS) vulnerability was discovered on Samsung sww-3400rw Router devices via the m2 parameter of the sess-bin/command…

Mitigation only
Fix from $1,600 2023-08-22
Harman Infotainment MEDIUM 6.8
CVE-2023-40291

Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an internal project name.

No fix yet
Fix from $1,600 2023-08-14
Harman Infotainment MEDIUM 6.8
CVE-2023-40293

Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection object.

No fix yet
Fix from $1,600 2023-08-14
Android CRITICAL 9.8
CVE-2023-30699

Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attacke…

Mitigation only
Fix from $2,300 2023-08-10
Android HIGH 7.8
CVE-2023-30696

An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

Mitigation only
Fix from $1,950 2023-08-10
Android HIGH 7.8
CVE-2023-30697

An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

Mitigation only
Fix from $1,950 2023-08-10
Galaxy Book Go Firmware HIGH 7.8
CVE-2023-30702

Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update…

Mitigation only
Fix from $1,950 2023-08-10
Android MEDIUM 5.5
CVE-2023-30698

Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege.

Mitigation only
Fix from $1,600 2023-08-10
Android MEDIUM 5.5
CVE-2023-30701

PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access.

Mitigation only
Fix from $1,600 2023-08-10
Galaxy Store MEDIUM 5.5
CVE-2023-30705

Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.56.6?allows local attackers to access privileged content providers as G…

Fix: 4.5.56.6+
Fix from $1,600 2023-08-10
Android HIGH 7.8
CVE-2023-30686

Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

Mitigation only
Fix from $1,950 2023-08-10
Android HIGH 7.8
CVE-2023-30687

Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

Mitigation only
Fix from $1,950 2023-08-10
Android HIGH 7.8
CVE-2023-30688

Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.

Mitigation only
Fix from $1,950 2023-08-10
Android HIGH 7.8
CVE-2023-30689

Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary c…

Mitigation only
Fix from $1,950 2023-08-10