Vulnerability index

Browse CVEs

1,191 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Exynos 1280 Firmware MEDIUM 5.5
CVE-2025-62816

An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. Unvalidated VS4L_VERTEXIOC_BOOTUP input lead…

Mitigation only
Fix from $1,600 2026-03-03
Exynos 1280 Firmware HIGH 7.5
CVE-2025-62814

An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL pointer dereference of ft_handle in load_fw_utc_v…

Mitigation only
Fix from $1,950 2026-03-03
Exynos 2200 Firmware HIGH 7.5
CVE-2025-66363

An issue was discovered in LBS in Samsung Mobile Processor Exynos 2200. There was no check for memory initialization within DL NAS Transport messages.

Mitigation only
Fix from $1,950 2026-03-03
Exynos 1380 Firmware MEDIUM 5.5
CVE-2025-62815

An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference of npu_proto_drv.ast.thread_r…

Mitigation only
Fix from $1,600 2026-03-03
Android HIGH 7.8
CVE-2026-20983

Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrary activi…

Mitigation only
Fix from $1,950 2026-02-04
Android MEDIUM 6.6
CVE-2026-20981

Improper input validation in FacAtFunction prior to SMR Feb-2026 Release 1 allows privileged physical attacker to execute arbitrary command with syst…

Mitigation only
Fix from $1,600 2026-02-04
Android MEDIUM 6.0
CVE-2026-20982

Path traversal in ShortcutService prior to SMR Feb-2026 Release 1 allows privileged local attacker to create file with system privilege.

Mitigation only
Fix from $1,600 2026-02-04
Members MEDIUM 5.5
CVE-2026-20986

Path traversal in Samsung Members prior to Chinese version 15.5.05.4 allows local attackers to overwrite data within Samsung Members.

Fix: 15.5.05.4+
Fix from $1,600 2026-02-04
Android HIGH 7.8
CVE-2026-20979

Improper privilege management in Settings prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrary activity with Settings privilege.

Mitigation only
Fix from $1,950 2026-02-04
Android MEDIUM 6.8
CVE-2026-20980

Improper input validation in PACM prior to SMR Feb-2026 Release 1 allows physical attacker to execute arbitrary commands.

Mitigation only
Fix from $1,600 2026-02-04
Android MEDIUM 6.1
CVE-2026-20978

Improper authorization in KnoxGuardManager prior to SMR Feb-2026 Release 1 allows local attackers to bypass the persistence configuration of the appl…

Mitigation only
Fix from $1,600 2026-02-04
Android MEDIUM 5.5
CVE-2026-20977

Improper access control in Emergency Sharing prior to SMR Feb-2026 Release 1 allows local attackers to interrupt its functioning.

No fix yet
Fix from $1,600 2026-02-04
Exynos 990 Firmware HIGH 7.5
CVE-2025-59439

An issue was discovered in Samsung Mobile Processor, Wearable Processor and Modem Exynos 980, 990, 850, 1080, 9110, W920, W930, W1000 and Modem 5123.…

Mitigation only
Fix from $1,950 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58345

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58346

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58347

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58348

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58340

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58341

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58342

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 6.2
CVE-2025-58344

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Exynos 980 Firmware MEDIUM 5.5
CVE-2025-58343

An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480, 1580, W…

Mitigation only
Fix from $1,600 2026-02-03
Magicinfo 9 Server CRITICAL 9.8
CVE-2026-25202

The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo9 Server.This issue affects M…

Fix: 21.1090.1+
Fix from $2,300 2026-02-02
Magicinfo 9 Server HIGH 8.8
CVE-2026-25201

An unauthenticated user can upload arbitrary files to execute remote code, leading to privilege escalation in MagicInfo9 Server. This issue affects M…

Fix: 21.1090.1+
Fix from $1,950 2026-02-02
Magicinfo 9 Server CRITICAL 9.8
CVE-2026-25200

A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Stored XSS, which can result in …

Fix: 21.1090.1+
Fix from $2,300 2026-02-02
Galaxy Store HIGH 7.8
CVE-2026-20976

Improper input validation in Galaxy Store prior to version 4.6.02 allows local attacker to execute arbitrary script.

Fix: 4.6.02.0+
Fix from $1,950 2026-01-09
Cloud MEDIUM 5.5
CVE-2026-20975

Improper handling of insufficient permission in Samsung Cloud prior to version 5.6.11 allows local attackers to access specific files in arbitrary pa…

Fix: 5.6.11+
Fix from $1,600 2026-01-09
Android CRITICAL 9.1
CVE-2026-20973

Out-of-bounds read in libimagecodec.quram.so prior to SMR Jan-2026 Release 1 allows remote attacker to access out-of-bounds memory.

Mitigation only
Fix from $2,300 2026-01-09
Android HIGH 7.8
CVE-2026-20970

Improper access control in SLocation prior to SMR Jan-2026 Release 1 allows local attackers to execute the privileged APIs.

Mitigation only
Fix from $1,950 2026-01-09
Android HIGH 7.8
CVE-2026-20971

Use After Free in PROCA driver prior to SMR Jan-2026 Release 1 allows local attackers to potentially execute arbitrary code.

Mitigation only
Fix from $1,950 2026-01-09