← Back

Samsung

samsung

1,508 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Assistant
assistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,508)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Wear Os
Nov 21, 2024
Feb 11, 2022
N/A· v4
3.3 LOW· v3
4.3 MEDIUM· v2
Unprotected component vulnerability in StTheaterModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to enable bedtime mode without a proper permission.
1Samsung
1Wear Os
Nov 21, 2024
Feb 11, 2022
N/A· v4
3.3 LOW· v3
4.3 MEDIUM· v2
Unprotected component vulnerability in StBedtimeModeAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
1Samsung
1Wear Os
Nov 21, 2024
Feb 11, 2022
N/A· v4
3.3 LOW· v3
4.3 MEDIUM· v2
An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
1Samsung
1Bixby
Nov 21, 2024
Feb 11, 2022
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
A vulnerability using PendingIntent in Bixby Vision prior to versions 3.7.60.8 in Android S(12), 3.7.50.6 in Andorid R(11) and below allows attackers to execute privileged action by hijacking and modifying the intent.
1Samsung
1Reminder
Nov 21, 2024
Feb 11, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
Improper access control vulnerability in Reminder prior to versions 12.3.01.3000 in Android S(12), 12.2.05.6000 in Android R(11) and 11.6.08.6000 in Andoid Q(10) allows attackers to register reminders or execute exporete...Show more
Improper access control vulnerability in Reminder prior to versions 12.3.01.3000 in Android S(12), 12.2.05.6000 in Android R(11) and 11.6.08.6000 in Andoid Q(10) allows attackers to register reminders or execute exporeted activities remotely.Show less
1Samsung
1Internet
Nov 21, 2024
Jan 14, 2022
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Incorrect download source UI in Downloads in Samsung Internet prior to 16.0.6.23 allows attackers to perform domain spoofing via a crafted HTML page.
1Samsung
1S Assistant
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
Improper access control vulnerability in S Assistant prior to version 7.5 allows attacker to remotely get senstive information.
1Samsung
1Galaxy Store
Nov 21, 2024
Jan 10, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.
1Samsung
1Samsung Email
Nov 21, 2024
Jan 10, 2022
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
Abitrary file access vulnerability in Samsung Email prior to 6.1.60.16 allows attacker to read isolated data in sandbox.
1Samsung
1Bixby Routines
Nov 21, 2024
Jan 10, 2022
N/A· v4
7.1 HIGH· v3
3.6 LOW· v2
A vulnerability using PendingIntent in Bixby Routines prior to version 3.1.21.8 in Android R(11.0) and 2.6.30.5 in Android Q(10.0) allows attackers to execute privileged action by hijacking and modifying the intent.
1Samsung
1Reminder
Nov 21, 2024
Jan 10, 2022
N/A· v4
7.1 HIGH· v3
3.6 LOW· v2
A vulnerability using PendingIntent in Reminder prior to version 12.2.05.0 in Android R(11.0) and 12.3.02.1000 in Android S(12.0) allows attackers to execute privileged action by hijacking and modifying the intent.
1Samsung
1Internet
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Improper authentication vulnerability in Samsung Internet prior to 16.0.2.19 allows attackers to bypass secret mode password authentication
1Samsung
1Health
Nov 21, 2024
Jan 10, 2022
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Improper session management vulnerability in Samsung Health prior to 6.20.1.005 prevents logging out from Samsung Health App.
4Aeotec
SamsungSilabs+1 more
6500 Series Firmware
700 Series FirmwareSth Eth 200+3 more
Nov 21, 2024
Jan 10, 2022
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6...Show more
Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.Show less
1Samsung
1Syncthru Web Service
Nov 21, 2024
Dec 20, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext passwords by reading the HTML source code. Authentication is not required.
1Samsung
1Pay
Nov 21, 2024
Dec 8, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
1Samsung
1Blockchain Wallet
Nov 21, 2024
Dec 8, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Intent redirection vulnerability in Samsung Blockchain Wallet prior to version 1.3.02.8 allows attacker to execute privileged action.
1Samsung
1Pay
Nov 21, 2024
Dec 8, 2021
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
Improper check or handling of exception conditions vulnerability in Samsung Pay (US only) prior to version 4.0.65 allows attacker to use NFC without user recognition.
1Samsung
1Contacts
Nov 21, 2024
Dec 8, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Insecure storage of device information in Contacts prior to version 12.7.05.24 allows attacker to get Samsung Account ID.
1Samsung
1Dialer
Nov 21, 2024
Dec 8, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Insecure storage of device information in Samsung Dialer prior to version 12.7.05.24 allows attacker to get Samsung Account ID.