Vulnerability index

Browse CVEs

1,202 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2023-21481 Improper URL input validation vulnerability in Samsung Account application prior to version 14.1.0.0 allows remote attackers to get sensitive informa… Account 14.1.0.0+ Fix from $1,9502025-09-03 MEDIUM 5.5 CVE-2023-21477 Access of Memory Location After End of Buffer vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access prote… Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 5.5 CVE-2023-21478 Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data. Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 5.3 CVE-2023-21479 Improper authorization in Smart suggestions prior to SMR Apr-2023 Release 1 in Android 13 and 4.1.01.0 in Android 12 allows remote attackers to regis… Android Mitigation only Fix from $1,6002025-09-03 HIGH 7.8 CVE-2023-21475 Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code. Android Mitigation only Fix from $1,9502025-09-03 HIGH 7.8 CVE-2023-21476 Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code. Android Mitigation only Fix from $1,9502025-09-03 HIGH 7.1 CVE-2023-21474 Intent redirection vulnerability in SecSettings prior to SMR Apr-2022 Release 1 allows attackers to access arbitrary file with system privilege. Android Mitigation only Fix from $1,9502025-09-03 MEDIUM 6.8 CVE-2023-21472 Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in … Android Mitigation only Fix from $1,6002025-09-03 MEDIUM 6.8 CVE-2023-21473 Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in … Android Mitigation only Fix from $1,6002025-09-03 CRITICAL 9.8 CVE-2023-21467 Error in 3GPP specification implementation in Exynos baseband prior to SMR Apr-2023 Release 1 allows incorrect handling of unencrypted message. Exynos Mitigation only Fix from $2,3002025-09-03 HIGH 7.8 CVE-2023-21468 Improper access control vulnerability in Telephony prior to SMR Apr-2023 Release 1 allows attackers to access files with escalated permission. Android Mitigation only Fix from $1,9502025-09-03 MEDIUM 6.5 CVE-2025-32100 An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 24… Exynos 980 Firmware Mitigation only Fix from $1,6002025-09-02 MEDIUM 5.3 CVE-2025-32098 An issue was discovered in Samsung Magician 6.3 through 8.3 on Windows. An attacker can achieve Elevation of Privileges to SYSTEM by exploiting insec… Magician after 8.3.0 Fix from $1,6002025-09-02 MEDIUM 5.5 CVE-2025-21022 Improper access control in Galaxy Wearable prior to version 2.2.63.25042861 allows local attackers to access sensitive information. Galaxy Wearable 2.2.63.25042861+ Fix from $1,6002025-08-06 HIGH 7.1 CVE-2025-21015 Path Traversal in Document scanner prior to SMR Aug-2025 Release 1 allows local attackers to delete file with Document scanner's privilege. Android Mitigation only Fix from $1,9502025-08-06 MEDIUM 6.7 CVE-2025-21017 Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds… Blockchain Keystore 1.3.17.2+ Fix from $1,6002025-08-06 MEDIUM 6.7 CVE-2025-21020 Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-boun… Blockchain Keystore 1.3.17.2+ Fix from $1,6002025-08-06 MEDIUM 6.7 CVE-2025-21021 Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memor… Blockchain Keystore 1.3.17.2+ Fix from $1,6002025-08-06 MEDIUM 5.5 CVE-2025-21019 Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is req… Health 6.30.1.003+ Fix from $1,6002025-08-06 MEDIUM 6.0 CVE-2025-21010 Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to deactivate Samsung account. Android Mitigation only Fix from $1,6002025-08-06 MEDIUM 5.5 CVE-2025-21014 Improper export of android application component in Emergency SoS prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive informat… Android Mitigation only Fix from $1,6002025-08-06 MEDIUM 6.5 CVE-2024-45183 An issue was discovered in Samsung Mobile Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, and 2400. A lack of a JPEG length check leads to an ou… Exynos 2100 Firmware Mitigation only Fix from $1,6002025-08-04 CRITICAL 9.1 CVE-2025-53082 An 'Arbitrary File Deletion' in Samsung DMS(Data Management Server) allows attackers to delete arbitrary files from unintended locations on the files… Data Management Server Firmware 2.3.13.1 / 2.6.14.1+ Fix from $2,3002025-07-29 CRITICAL 9.1 CVE-2025-53081 An 'Arbitrary File Creation' in Samsung DMS(Data Management Server) allows attackers to create arbitrary files in unintended locations on the filesys… Data Management Server Firmware 2.3.13.1 / 2.6.14.1+ Fix from $2,3002025-07-29 MEDIUM 6.5 CVE-2025-53080 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Samsung DMS(Data Management Server) allows authenticated attackers … Data Management Server Firmware 2.3.13.1 / 2.6.14.1+ Fix from $1,6002025-07-29 CRITICAL 9.8 CVE-2025-53078 Deserialization of Untrusted Data in Samsung DMS(Data Management Server) allows attackers to execute arbitrary code via write file to system Data Management Server Firmware 2.3.13.1 / 2.6.14.1+ Fix from $2,3002025-07-29 MEDIUM 6.5 CVE-2025-53077 An execution after redirect in Samsung DMS(Data Management Server) allows attackers to execute limited functions without permissions. An attacker cou… Data Management Server Firmware 2.3.13.1 / 2.6.14.1+ Fix from $1,6002025-07-29 CRITICAL 9.8 CVE-2025-54455 Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Ser… Magicinfo 9 Server 21.1080.0+ Fix from $2,3002025-07-23 CRITICAL 9.8 CVE-2025-54448 Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects Magi… Magicinfo 9 Server 21.1080.0+ Fix from $2,3002025-07-23 CRITICAL 9.8 CVE-2025-54449 Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects Magi… Magicinfo 9 Server 21.1080.0+ Fix from $2,3002025-07-23