← Back

Samsung

samsung

1,508 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Assistant
assistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,508)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Watch Active Plugin
Nov 21, 2024
Jun 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
1Samsung
1Galaxy Watch 3 Plugin
Nov 21, 2024
Jun 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
1Samsung
1Galaxy Watch Plugin
Nov 21, 2024
Jun 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
1Samsung
1Internet
Nov 21, 2024
Jun 11, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar via phising URL link.
1Samsung
1Internet
Nov 21, 2024
Jun 11, 2021
N/A· v4
7.8 HIGH· v3
4.4 MEDIUM· v2
Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications to execute arbitrary activity in specific condition.
1Samsung
1Gear S
Nov 21, 2024
Jun 11, 2021
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
Information exposure vulnerability in Gear S Plugin prior to version 2.2.05.20122441 allows unstrusted applications to access connected BT device information.
1Samsung
1Notes
Nov 21, 2024
Jun 11, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.
1Samsung
1Smartthings Firmware
Nov 21, 2024
Jun 11, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log.
1Samsung
1Account
Nov 21, 2024
Jun 11, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebVi...Show more
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.Show less
1Samsung
1Notes
Nov 21, 2024
Jun 11, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information.
1Samsung
1Health
Nov 21, 2024
Jun 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action.
1Samsung
1Internet
Nov 21, 2024
Jun 11, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.
1Samsung
1Smart Manager
Nov 21, 2024
Jun 11, 2021
N/A· v4
7.1 HIGH· v3
3.6 LOW· v2
Improper configuration in Smart Manager prior to version 11.0.05.0 allows attacker to access the file with system privilege.
1Samsung
1Bixby Voice
Nov 21, 2024
Jun 11, 2021
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts.
1Samsung
1Android
Oct 30, 2025
Jun 11, 2021
N/A· v4
6.4 MEDIUM· v3
4.4 MEDIUM· v2
A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.
1Samsung
1Android
Oct 30, 2025
Jun 11, 2021
N/A· v4
6.4 MEDIUM· v3
4.4 MEDIUM· v2
A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.
2Hp
Samsung
382Clp 360 Ss062a
Clp 365 Ss066aClp 365 Ss067a+379 more
Nov 21, 2024
May 20, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could lead to an escalation of privilege.
3Arista
SamsungSiemens
19C 100 Firmware
C 110 FirmwareC 120 Firmware+16 more
Jun 2, 2026
May 11, 2021
N/A· v4
5.3 MEDIUM· v3
2.9 LOW· v2
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragm...Show more
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.Show less
2Samsung
Siemens
136gk5763 1al00 3aa0 Firmware
6gk5763 1al00 3da0 Firmware6gk5763 1al00 7da0 Firmware+10 more
Apr 14, 2026
May 11, 2021
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and process them as full unfrag...Show more
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and process them as full unfragmented frames. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.Show less
3Arista
SamsungSiemens
18C 100 Firmware
C 110 FirmwareC 120 Firmware+15 more
Apr 14, 2026
May 11, 2021
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (i.e., LLC/SNAP) he...Show more
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (i.e., LLC/SNAP) header for EAPOL. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.Show less