Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29064 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25631 1 Libreoffice 1 Libreoffice 2024-11-21 9.3 HIGH 8.8 HIGH
In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist but results in ShellExecute attempting to launch an executable type.
CVE-2021-25527 1 Samsung 1 Pay 2024-11-21 2.1 LOW 3.8 LOW
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
CVE-2021-25526 1 Samsung 1 Blockchain Wallet 2024-11-21 2.1 LOW 4.0 MEDIUM
Intent redirection vulnerability in Samsung Blockchain Wallet prior to version 1.3.02.8 allows attacker to execute privileged action.
CVE-2021-25514 1 Google 1 Android 2024-11-21 4.3 MEDIUM 3.3 LOW
An improper intent redirection handling in Tags prior to SMR Dec-2021 Release 1 allows attackers to access sensitive information.
CVE-2021-25507 1 Samsung 1 Samsung Flow 2024-11-21 2.7 LOW 5.7 MEDIUM
Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user device to access part of notification data in Secure Folder without authorization.
CVE-2021-25504 1 Samsung 1 Group Sharing 2024-11-21 2.1 LOW 4.0 MEDIUM
Intent redirection vulnerability in Group Sharing prior to 10.8.03.2 allows attacker to access contact information.
CVE-2021-25501 1 Google 1 Android 2024-11-21 2.1 LOW 5.7 MEDIUM
An improper access control vulnerability in SCloudBnRReceiver in SecTelephonyProvider prior to SMR Nov-2021 Release 1 allows untrusted application to call some protected providers.
CVE-2021-25490 1 Google 1 Android 2024-11-21 3.6 LOW 6.0 MEDIUM
A keyblob downgrade attack in keymaster prior to SMR Oct-2021 Release 1 allows attacker to trigger IV reuse vulnerability with privileged process.
CVE-2021-25472 1 Google 1 Android 2024-11-21 2.1 LOW 4.0 MEDIUM
An improper access control vulnerability in BluetoothSettingsProvider prior to SMR Oct-2021 Release 1 allows untrusted application to overwrite some Bluetooth information.
CVE-2021-25470 2 Google, Samsung 2 Android, Exynos 2024-11-21 3.6 LOW 7.9 HIGH
An improper caller check logic of SMC call in TEEGRIS secure OS prior to SMR Oct-2021 Release 1 can be used to compromise TEE.
CVE-2021-25463 1 Samsung 1 Penup 2024-11-21 2.1 LOW 4.0 MEDIUM
Improper access control vulnerability in PENUP prior to version 3.8.00.18 allows arbitrary webpage loading in webview.
CVE-2021-25460 1 Google 1 Android 2024-11-21 2.1 LOW 4.0 MEDIUM
An improper access control vulnerability in sspExit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to terminate BlockchainTZService.
CVE-2021-25459 1 Google 1 Android 2024-11-21 2.1 LOW 4.0 MEDIUM
An improper access control vulnerability in sspInit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to start BlockchainTZService.
CVE-2021-25453 1 Google 1 Android 2024-11-21 2.1 LOW 5.1 MEDIUM
Some improper access control in Bluetooth APIs prior to SMR Sep-2021 Release 1 allows untrusted application to get Bluetooth information.
CVE-2021-25448 1 Samsung 1 Smart Touch Call 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
Improper access control vulnerability in Smart Touch Call prior to version 1.0.0.5 allows arbitrary webpage loading in webview.
CVE-2021-25447 1 Samsung 2 Smartthings, Smartthings Firmware 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause local file inclusion in webview.
CVE-2021-25446 1 Samsung 2 Smartthings, Smartthings Firmware 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview.
CVE-2021-25440 1 Samsung 1 Factorycamerafb 2024-11-21 4.6 MEDIUM 7.8 HIGH
Improper access control vulnerability in FactoryCameraFB prior to version 3.4.74 allows untrusted applications to access arbitrary files with an escalated privilege.
CVE-2021-25439 2 Google, Samsung 2 Android, Members 2024-11-21 2.1 LOW 3.3 LOW
Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview.
CVE-2021-25438 2 Google, Samsung 2 Android, Members 2024-11-21 4.6 MEDIUM 7.8 HIGH
Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause local file inclusion in webview.