← Back

Smart Switch

smart_switch

Vendor: Samsung • 13 CVEs

CVEs (13)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
7.1 HIGH· v4
6.5 MEDIUM· v3
N/A· v2
Path traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files with Smart Switch privilege.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
6.9 MEDIUM· v4
6.5 MEDIUM· v3
N/A· v2
Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
7.1 HIGH· v4
7.5 HIGH· v3
N/A· v2
Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger privileged functions.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
7.1 HIGH· v4
9.8 CRITICAL· v3
N/A· v2
Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authentication.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
5.3 MEDIUM· v4
9.8 CRITICAL· v3
N/A· v2
Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attackers to potentially bypass authentication.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
7.1 HIGH· v4
5.3 MEDIUM· v3
N/A· v2
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attackers to configure a downgraded scheme for authentication.
1Samsung
1Smart Switch
Jun 17, 2026
Mar 16, 2026
5.3 MEDIUM· v4
5.3 MEDIUM· v3
N/A· v2
Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows remote attackers to set a specific configuration.
1Samsung
1Smart Switch
Jun 17, 2026
Nov 5, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.
1Samsung
1Smart Switch
Jun 17, 2026
Oct 10, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
1Samsung
1Smart Switch
Jun 17, 2026
Oct 10, 2025
N/A· v4
7.8 HIGH· v3
N/A· v2
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability.
1Samsung
1Smart Switch
Jun 17, 2026
Oct 10, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability.
1Samsung
1Smart Switch
Jun 17, 2026
Oct 10, 2025
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.
1Samsung
1Smart Switch
Jun 17, 2026
Jun 4, 2025
N/A· v4
5.0 MEDIUM· v3
N/A· v2
Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this v...Show more
Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability.Show less