Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.8
CVE-2023-21421
Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker…
Android
Mitigation only
MEDIUM 5.5
CVE-2023-21422
Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attackers to set custom DNS server w…
Android
Mitigation only
MEDIUM 5.5
CVE-2022-39915
Improper access control vulnerability in Calendar prior to versions 11.6.08.0 in Android Q(10), 12.2.11.3000 in Android R(11), 12.3.07.2000 in Androi…
Calendar
11.6.08.0 / 12.2.11.3000+
HIGH 7.5
CVE-2022-39902
Improper authorization in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to get sensitive information including IMEI via emer…
Exynos Firmware
Mitigation only
MEDIUM 6.8
CVE-2022-39911
Improper check or handling of exceptional conditions vulnerability in Samsung Pass prior to version 4.0.06.1 allows attacker to access Samsung Pass.
Pass
4.0.06.1+
MEDIUM 6.5
CVE-2022-39901
Improper authentication in Exynos baseband prior to SMR DEC-2022 Release 1 allows remote attacker to disable the network traffic encryption between U…
Exynos Firmware
Mitigation only
MEDIUM 5.5
CVE-2022-39909
Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers t…
Gear Iconx Pc Manager
2.1.221019.51+
CRITICAL 9.8
CVE-2022-39892
Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature.
Pass
4.0.05.1+
HIGH 7.5
CVE-2022-39890
Improper Authorization in Samsung Billing prior to version 5.0.56.0 allows attacker to get sensitive information.
Billing
5.0.56.0+
HIGH 7.5
CVE-2022-39891
Heap overflow vulnerability in parse_pce function in libsavsaudio.so in Editor Lite prior to version 4.0.41.3 allows attacker to get information.
Editor Lite
4.0.41.3+
CRITICAL 9.1
CVE-2022-39881
Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR Sep-2022 Release allows remote attacker to read out of…
Exynos Firmware
Mitigation only
MEDIUM 5.5
CVE-2022-39874
Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
Account
13.5.01.3+
MEDIUM 5.5
CVE-2022-39878
Improper access control vulnerability in Samsung Checkout prior to version 5.0.55.3 allows attackers to access sensitive information via implicit int…
Checkout
5.0.55.3+
MEDIUM 5.3
CVE-2022-39877
Improper access control vulnerability in ProfileSharingAccount in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(…
Group Sharing
13.0.6.14 / 13.0.6.15+
HIGH 7.5
CVE-2022-39867
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive inf…
Smartthings
1.7.89.0+
HIGH 7.5
CVE-2022-39868
Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information …
Smartthings
1.7.89.0+
HIGH 7.5
CVE-2022-39869
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive inf…
Smartthings
1.7.89.0+
HIGH 7.5
CVE-2022-39870
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive inf…
Smartthings
1.7.89.0+
HIGH 7.5
CVE-2022-39871
Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows attackers to access sensitive inf…
Smartthings
1.7.89.0+
CRITICAL 9.8
CVE-2022-39862
Improper authorization in Dynamic Lockscreen prior to SMR Sep-2022 Release 1 in Android R(11) and 3.3.03.66 in Android S(12) allows unauthorized use …
Dynamic Lockscreen
3.3.03.66+
HIGH 7.5
CVE-2022-39864
Improper access control vulnerability in WifiSetupLaunchHelper in SmartThings prior to version 1.7.89.25 allows attackers to access sensitive informa…
Smartthings
1.7.85.25+
HIGH 7.5
CVE-2022-39865
Improper access control vulnerability in ContentsSharingActivity.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive info…
Smartthings
1.7.89.0+
HIGH 7.5
CVE-2022-39866
Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive inform…
Smartthings
1.7.89.0+
HIGH 7.8
CVE-2022-39858
Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to write arbitrary file as FactoryCamer…
Factorycamera
3.5.51+
MEDIUM 5.5
CVE-2022-39857
Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3.5.51 allows attackers to access broadcasting Intent…
Factorycamerafb
3.5.51+
HIGH 7.5
CVE-2022-40278
An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). createDB in security/provisioning/src/provisioningdatabasemanager.c has a m…
Tizenrt
No fix yet
HIGH 7.5
CVE-2022-40279
An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). l2_packet_receive_timeout in wpa_supplicant/src/l2_packet/l2_packet_pcap.c …
Tizenrt
No fix yet
HIGH 7.5
CVE-2022-40757
A Buffer Access with Incorrect Length Value vulnerablity in the TEE_MACComputeFinal function in Samsung mTower through 0.3.0 allows a trusted applica…
Mtower
after 0.3.0
HIGH 7.5
CVE-2022-40758
A Buffer Access with Incorrect Length Value vulnerablity in the TEE_CipherUpdate function in Samsung mTower through 0.3.0 allows a trusted applicatio…
Mtower
after 0.3.0
HIGH 7.5
CVE-2022-40759
A NULL pointer dereference issue in the TEE_MACCompareFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial…
Mtower
after 0.3.0