Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1089 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-42549 1 Samsung 1 Account 2024-02-28 N/A 6.5 MEDIUM
Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
CVE-2023-30714 1 Samsung 1 Android 2024-02-28 N/A 4.6 MEDIUM
Improper authorization vulnerability in FolderContainerDragDelegate in One UI Home prior to SMR Sep-2023 Release 1 allows physical attackers to change some settings of the folder lock.
CVE-2023-30696 1 Samsung 1 Android 2024-02-28 N/A 7.8 HIGH
An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.
CVE-2023-30708 1 Samsung 1 Android 2024-02-28 N/A 7.5 HIGH
Improper authentication in SecSettings prior to SMR Sep-2023 Release 1 allows attacker to access Captive Portal Wi-Fi in Reactivation Lock status.
CVE-2023-30698 1 Samsung 1 Android 2024-02-28 N/A 5.5 MEDIUM
Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege.
CVE-2023-40218 1 Samsung 12 Exynos 1280, Exynos 1280 Firmware, Exynos 1380 and 9 more 2024-02-28 N/A 3.3 LOW
An issue was discovered in the NPU kernel driver in Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, and 1380. An integer overflow can bypass detection of error cases via a crafted application.
CVE-2023-41911 1 Samsung 2 Exynos 2200, Exynos 2200 Firmware 2024-02-28 N/A 5.5 MEDIUM
Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).
CVE-2023-30700 1 Samsung 1 Android 2024-02-28 N/A 3.3 LOW
PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.
CVE-2023-30701 1 Samsung 1 Android 2024-02-28 N/A 5.5 MEDIUM
PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access.
CVE-2023-30710 1 Samsung 1 Android 2024-02-28 N/A 7.8 HIGH
Improper input validation vulnerability in Knox AI prior to SMR Sep-2023 Release 1 allows local attackers to launch privileged activities.
CVE-2023-30725 1 Samsung 1 Gallery 2024-02-28 N/A 5.5 MEDIUM
Improper authentication in LocalProvier of Gallery prior to version 14.5.01.2 allows attacker to access the data in content provider.
CVE-2023-30728 1 Samsung 1 Packageinstallerchn 2024-02-28 N/A 5.5 MEDIUM
Intent redirection vulnerability in PackageInstallerCHN prior to version 13.1.03.00 allows local attacker to access arbitrary file. This vulnerability requires user interaction.
CVE-2023-30712 1 Samsung 1 Android 2024-02-28 N/A 7.8 HIGH
Improper input validation in Settings Suggestions prior to SMR Sep-2023 Release 1 allows attackers to launch arbitrary activity.
CVE-2023-30709 1 Samsung 1 Android 2024-02-28 N/A 6.7 MEDIUM
Improper access control in Dual Messenger prior to SMR Sep-2023 Release 1 allows local attackers launch activity with system privilege.
CVE-2023-30692 1 Samsung 1 Android 2024-02-28 N/A 7.8 HIGH
Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
CVE-2023-30707 1 Samsung 1 Android 2024-02-28 N/A 7.1 HIGH
Improper input validation vulnerability in FileProviderStatusReceiver in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows local attackers to delete arbitrary files with Samsung Keyboard privilege.
CVE-2023-37377 1 Samsung 8 Exynos 2100, Exynos 2100 Firmware, Exynos 850 and 5 more 2024-02-28 N/A 7.5 HIGH
An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause incorrect packet filtering.
CVE-2023-42543 1 Samsung 1 Bixby Voice 2024-02-28 N/A 7.5 HIGH
Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arbitrary data with Bixby Voice privilege.
CVE-2023-30687 1 Samsung 1 Android 2024-02-28 N/A 7.8 HIGH
Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-42544 1 Samsung 1 Quick Share 2024-02-28 N/A 5.5 MEDIUM
Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files.