Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Charm Firmware MEDIUM 5.5
CVE-2022-36829

PendingIntent hijacking vulnerability in releaseAlarm in Charm by Samsung prior to version 1.2.3 allows local attackers to access files without permi…

Fix: 1.2.3+
Fix from $1,600 2022-08-05
Charm Firmware MEDIUM 5.5
CVE-2022-36830

PendingIntent hijacking vulnerability in cancelAlarmManager in Charm by Samsung prior to version 1.2.3 allows local attackers to access files without…

Fix: 1.2.3+
Fix from $1,600 2022-08-05
Notes MEDIUM 5.5
CVE-2022-36831

Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permiss…

Fix: 4.3.14.39+
Fix from $1,600 2022-08-05
Mtower HIGH 7.8
CVE-2022-35858

The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to trigger a memory overwrite, den…

No fix yet
Fix from $1,950 2022-08-04
Galaxy Store HIGH 7.8
CVE-2022-33708

Improper input validation vulnerability in AppsPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities…

Fix: 4.5.41.8+
Fix from $1,950 2022-07-12
Galaxy Store HIGH 7.8
CVE-2022-33709

Improper input validation vulnerability in ApexPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities…

Fix: 4.5.41.8+
Fix from $1,950 2022-07-12
Galaxy Store HIGH 7.8
CVE-2022-33710

Improper input validation vulnerability in BillingPackageInsraller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activit…

Fix: 4.5.41.8+
Fix from $1,950 2022-07-12
Cloud HIGH 7.5
CVE-2022-33713

Implicit Intent hijacking vulnerability in Samsung Cloud prior to version 5.2.0 allows attacker to get sensitive information.

Fix: 5.2.0+
Fix from $1,950 2022-07-12
Android Usb Driver MEDIUM 5.5
CVE-2022-33711

Improper validation of integrity check vulnerability in Samsung USB Driver Windows Installer for Mobile Phones prior to version 1.7.56.0 allows local…

Fix: 1.7.56.0+
Fix from $1,600 2022-07-12
Find My Mobile MEDIUM 5.3
CVE-2022-33707

Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.

Fix: 7.2.24.12+
Fix from $1,600 2022-07-12
Camera MEDIUM 5.3
CVE-2022-33712

Intent redirection vulnerability using implict intent in Camera prior to versions 12.0.01.64 ,12.0.3.23, 12.0.0.98, 12.0.6.11, 12.0.3.19 in Android S…

Fix: 12.0.0.98 / 12.0.01.64+
Fix from $1,600 2022-07-12
Kies HIGH 7.8
CVE-2022-30744

DLL hijacking vulnerability in KiesWrapper in Samsung Kies prior to version 2.6.4.22043_1 allows attacker to execute arbitrary code.

Fix: 2.6.4.22043_1+
Fix from $1,950 2022-06-07
Smartthings HIGH 7.8
CVE-2022-30749

Improper access control vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to add arbitrary smart devices by bypassing login act…

Fix: 1.7.85.25+
Fix from $1,950 2022-06-07
Account HIGH 7.5
CVE-2022-30735

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without permission.

Fix: 13.2.00.6+
Fix from $1,950 2022-06-07
Smartthings HIGH 7.5
CVE-2022-30746

Missing caller check in Smart Things prior to version 1.7.85.12 allows attacker to access senstive information remotely using javascript interface AP…

Fix: 1.7.85.12+
Fix from $1,950 2022-06-07
Quick Share MEDIUM 5.5
CVE-2022-30745

Improper access control vulnerability in Quick Share prior to version 13.1.2.4 allows attacker to access internal files in Quick Share.

Fix: 13.1.2.4+
Fix from $1,600 2022-06-07
Smartthings MEDIUM 5.5
CVE-2022-30747

PendingIntent hijacking vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to access files without permission via implicit Inten…

Fix: 1.7.85.25+
Fix from $1,600 2022-06-07
Members MEDIUM 5.5
CVE-2022-30748

Unprotected dynamic receiver in Samsung Members prior to version 4.2.005 allows attacker to launch arbitrary activity.

Fix: 4.2.005+
Fix from $1,600 2022-06-07
Account MEDIUM 5.3
CVE-2022-30734

Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number wi…

Fix: 13.2.00.6+
Fix from $1,600 2022-06-07
Account MEDIUM 5.3
CVE-2022-30736

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without per…

Fix: 13.2.00.6+
Fix from $1,600 2022-06-07
Account MEDIUM 5.3
CVE-2022-30737

Implicit Intent hijacking vulnerability in Samsung Account prior to version 13.2.00.6 allows attackers to get email ID.

Fix: 13.2.00.6+
Fix from $1,600 2022-06-07
Account MEDIUM 5.3
CVE-2022-30743

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without per…

Fix: 13.2.00.6+
Fix from $1,600 2022-06-07
Account HIGH 7.5
CVE-2022-30732

Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive information via onA…

Fix: 13.2.00.6+
Fix from $1,950 2022-06-07
My Files MEDIUM 5.5
CVE-2022-30731

Improper access control vulnerability in My Files prior to version 13.1.00.193 allows attackers to access arbitrary private files in My Files applica…

Fix: 13.1.00.193+
Fix from $1,600 2022-06-07
Account MEDIUM 5.3
CVE-2022-30733

Sensitive information exposure in Sign-in log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number wit…

Fix: 13.2.00.6+
Fix from $1,600 2022-06-07
Gear Iconx Pc Manager HIGH 7.8
CVE-2022-28792

DLL hijacking vulnerability in Gear IconX PC Manager prior to version 2.1.220405.51 allows attacker to execute arbitrary code. The patch adds proper …

Fix: 2.1.220405.51+
Fix from $1,950 2022-05-03
Voice Note MEDIUM 5.5
CVE-2022-28789

Unprotected activities in Voice Note prior to version 21.3.51.11 allows attackers to record voice without user interaction. The patch adds proper per…

Fix: 21.3.51.11+
Fix from $1,600 2022-05-03
Galaxy Store MEDIUM 5.5
CVE-2022-28791

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a spec…

Fix: 4.5.41.8+
Fix from $1,600 2022-05-03
Factorycamera HIGH 7.8
CVE-2022-27838

Improper access control vulnerability in FactoryCamera prior to version 2.1.96 allows attacker to access the file with system privilege.

Fix: 2.1.96+
Fix from $1,950 2022-04-11
Smart Switch Pc HIGH 7.8
CVE-2022-27842

DLL hijacking vulnerability in Smart Switch PC prior to version 4.2.22022_4 allows attacker to execute abitrary code.

Fix: 4.2.22022_4+
Fix from $1,950 2022-04-11