Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2024-23769 Improper privilege control for the named pipe in Samsung Magician PC Software 8.0.0 (for Windows) allows a local attacker to read privileged data. Magician Mitigation only Fix from $1,6002024-02-07 MEDIUM 5.5 CVE-2024-20823 Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive inform… Galaxy Store 4.5.63.6+ Fix from $1,6002024-02-06 MEDIUM 5.5 CVE-2024-20824 Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive informati… Galaxy Store 4.5.63.6+ Fix from $1,6002024-02-06 MEDIUM 5.5 CVE-2024-20825 Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via i… Galaxy Store 4.5.63.6+ Fix from $1,6002024-02-06 MEDIUM 5.5 CVE-2024-20826 Implicit intent hijacking vulnerability in UPHelper library prior to version 4.0.0 allows local attackers to access sensitive information via implici… Uphelper Library 4.0.0+ Fix from $1,6002024-02-06 HIGH 7.8 CVE-2024-20817 Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overfl… Android Mitigation only Fix from $1,9502024-02-06 HIGH 7.8 CVE-2024-20818 Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overfl… Android Mitigation only Fix from $1,9502024-02-06 HIGH 7.8 CVE-2024-20819 Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer ove… Android Mitigation only Fix from $1,9502024-02-06 HIGH 7.1 CVE-2024-20820 Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Out-Of-Bounds read. Android Mitigation only Fix from $1,9502024-02-06 MEDIUM 5.5 CVE-2024-20822 Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive infor… Galaxy Store 4.5.63.6+ Fix from $1,6002024-02-06 HIGH 7.8 CVE-2024-20812 Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. Android Mitigation only Fix from $1,9502024-02-06 HIGH 7.8 CVE-2024-20813 Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. Android Mitigation only Fix from $1,9502024-02-06 MEDIUM 6.5 CVE-2024-20815 Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connec… Android Mitigation only Fix from $1,6002024-02-06 MEDIUM 6.5 CVE-2024-20816 Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers conne… Android Mitigation only Fix from $1,6002024-02-06 MEDIUM 5.5 CVE-2024-20814 Out-of-bounds Read in padmd_vld_ac_prog_refine of libpadm.so prior to SMR Feb-2024 Release 1 allows local attackers access unauthorized information. Android Mitigation only Fix from $1,6002024-02-06 MEDIUM 5.5 CVE-2024-20808 Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data. Nearby Device Scanning 11.1.14.7+ Fix from $1,6002024-01-04 MEDIUM 5.5 CVE-2024-20809 Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data. Nearby Device Scanning 11.1.14.7+ Fix from $1,6002024-01-04 MEDIUM 6.5 CVE-2024-20803 Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing proce… Android Mitigation only Fix from $1,6002024-01-04 MEDIUM 5.5 CVE-2024-20802 Improper access control vulnerability in Samsung DeX prior to SMR Jan-2024 Release 1 allows owner to access other users' notification in a multi-… Dex Mitigation only Fix from $1,6002024-01-04 MEDIUM 5.5 CVE-2024-20804 Path traversal vulnerability in FileUriConverter of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in A… Android 14.5.00.21+ Fix from $1,6002024-01-04 MEDIUM 5.5 CVE-2024-20805 Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Andr… Android 14.5.00.21+ Fix from $1,6002024-01-04 MEDIUM 5.5 CVE-2024-20806 Improper access control in Notification service prior to SMR Jan-2024 Release 1 allows local attacker to access notification data. Android Mitigation only Fix from $1,6002024-01-04 CRITICAL 9.8 CVE-2023-41268 Improper input validation vulnerability in Samsung Open Source Escargot allows stack overflow and segmentation fault. This issue affects Escargot: fr… Escargot Patch available Fix from $2,3002023-12-06 CRITICAL 9.8 CVE-2023-42580 Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK f… Galaxy Store 4.5.64.4+ Fix from $2,3002023-12-05 HIGH 7.5 CVE-2023-42581 Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data. Galaxy Store 4.5.64.4+ Fix from $1,9502023-12-05 HIGH 7.8 CVE-2023-42574 Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrary activity in GameHomeCN. Gamehomecn 4.2.60.2+ Fix from $1,9502023-12-05 HIGH 7.5 CVE-2023-42578 Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to … Cloud after 5.2.00.7 Fix from $1,9502023-12-05 MEDIUM 6.8 CVE-2023-42575 Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid fl… Pass 4.3.00.17+ Fix from $1,6002023-12-05 MEDIUM 6.8 CVE-2023-42576 Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid ex… Pass 4.3.00.17+ Fix from $1,6002023-12-05 MEDIUM 5.3 CVE-2023-42579 Improper usage of insecure protocol (i.e. HTTP) in SogouSDK of Chinese Samsung Keyboard prior to versions 5.3.70.1 in Android 11, 5.4.60.49, 5.4.85.5… Samsung Keyboard 5.3.70.1 / 5.4.60.49+ Fix from $1,6002023-12-05