Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Samsung Flow MEDIUM 5.7
CVE-2021-25507

Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user devi…

Fix: 4.8.03.5+
Fix from $1,600 2021-11-05
Health MEDIUM 5.5
CVE-2021-25506

Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service.

Fix: 6.19.1.0001+
Fix from $1,600 2021-11-05
Notes HIGH 7.8
CVE-2021-25496

A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows a…

Fix: 4.3.02.61+
Fix from $1,950 2021-10-06
Notes HIGH 7.8
CVE-2021-25497

A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows a…

Fix: 4.3.02.61+
Fix from $1,950 2021-10-06
Notes HIGH 7.8
CVE-2021-25498

A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows…

Fix: 4.3.02.61+
Fix from $1,950 2021-10-06
Galaxy Store MEDIUM 5.5
CVE-2021-25499

Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows attacker to access content provi…

Fix: 4.5.32.4+
Fix from $1,600 2021-10-06
Android HIGH 7.8
CVE-2021-25487 KEV

Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in a…

Mitigation only
Fix from $1,950 2021-10-06
Notes HIGH 7.8
CVE-2021-25494

A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execut…

Fix: 4.3.02.61+
Fix from $1,950 2021-10-06
Notes HIGH 7.8
CVE-2021-25495

A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code e…

Fix: 4.3.02.61+
Fix from $1,950 2021-10-06
Notes HIGH 7.1
CVE-2021-25492

Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read.

Fix: after 4.3.02.61
Fix from $1,950 2021-10-06
Notes HIGH 7.1
CVE-2021-25493

Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read

Fix: after 4.3.02.61
Fix from $1,950 2021-10-06
Android MEDIUM 5.5
CVE-2021-25489 KEV

Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 results in format string bug …

Mitigation only
Fix from $1,600 2021-10-06
Themes HIGH 7.0
CVE-2021-25465

An improper scheme check vulnerability in Samsung Themes prior to version 5.2.01 allows attackers to perform Man-in-the-middle attack.

Fix: 5.2.01+
Fix from $1,950 2021-09-09
Internet MEDIUM 5.9
CVE-2021-25466

Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-the-middle attack and obtain Sa…

Fix: 15.0.2.47+
Fix from $1,600 2021-09-09
Capture MEDIUM 5.5
CVE-2021-25464

An improper file management vulnerability in SamsungCapture prior to version 4.8.02 allows sensitive information leak.

Fix: 4.8.02+
Fix from $1,600 2021-09-09
Drive Manager HIGH 7.8
CVE-2021-39373

Samsung Drive Manager 2.0.104 on Samsung H3 devices allows attackers to bypass intended access controls on disk management. WideCharToMultiByte, Wide…

No fix yet
Fix from $1,950 2021-09-01
Tizenrt HIGH 7.5
CVE-2021-22684

Tizen RT RTOS version 3.0.GBB is vulnerable to integer wrap-around in functions_calloc and mm_zalloc. This improper memory assignment can lead to arb…

Fix: after 3.0
Fix from $1,950 2021-08-31
Internet MEDIUM 5.3
CVE-2021-25445

Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Intern…

Fix: 14.2+
Fix from $1,600 2021-08-05
Smartthings Firmware MEDIUM 5.3
CVE-2021-25446

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in w…

Fix: 1.7.67.25+
Fix from $1,600 2021-08-05
Smartthings Firmware MEDIUM 5.3
CVE-2021-25447

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause local file inclusion in webvie…

Fix: 1.7.67.25+
Fix from $1,600 2021-08-05
Smart Touch Call MEDIUM 5.3
CVE-2021-25448

Improper access control vulnerability in Smart Touch Call prior to version 1.0.0.5 allows arbitrary webpage loading in webview.

Fix: 1.0.0.5+
Fix from $1,600 2021-08-05
Factorycamerafb HIGH 7.8
CVE-2021-25440

Improper access control vulnerability in FactoryCameraFB prior to version 3.4.74 allows untrusted applications to access arbitrary files with an esca…

Fix: 3.4.74+
Fix from $1,950 2021-07-08
Ar Emoji Editor HIGH 7.8
CVE-2021-25441

Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to ac…

Mitigation only
Fix from $1,950 2021-07-08
Knox Cloud Services HIGH 7.5
CVE-2021-25442

Improper MDM policy management vulnerability in KME module prior to KCS version 1.39 allows MDM users to bypass Knox Manage authentication.

Fix: 1.39+
Fix from $1,950 2021-07-08
Members HIGH 7.8
CVE-2021-25438

Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and…

Fix: 2.4.85.11+
Fix from $1,950 2021-07-08
Cameralyzer MEDIUM 5.5
CVE-2021-25431

Improper access control vulnerability in Cameralyzer prior to versions 3.2.1041 in 3.2.x, 3.3.1040 in 3.3.x, and 3.4.4210 in 3.4.x allows untrusted a…

Fix: 3.2.1041 / 3.3.1040+
Fix from $1,600 2021-07-08
Health MEDIUM 5.3
CVE-2021-25425

Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exported component.

Fix: 6.17+
Fix from $1,600 2021-06-11
Galaxy Watch Active 2 Firmware HIGH 8.8
CVE-2021-25424

Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the us…

Fix: 5.5+
Fix from $1,950 2021-06-11
Internet HIGH 7.8
CVE-2021-25418

Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications to execute arbitrary activit…

Fix: 14.0.1.62+
Fix from $1,950 2021-06-11
Internet MEDIUM 6.5
CVE-2021-25419

Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar…

Fix: 14.0.1.62+
Fix from $1,600 2021-06-11