← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Account
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
1Samsung
1Account
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
1Samsung
1Account
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
1Samsung
1Account
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
1Samsung
1Account
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
1Samsung
1Phone
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Use of implicit intent for sensitive communication vulnerability in Phone prior to versions 12.7.20.12 in Android 11, 13.1.48, 13.5.28 in Android 12, and 14.7.38 in Android 13 allows attackers to access location data.
1Samsung
1Quick Share
Nov 21, 2024
Nov 7, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files.
1Samsung
1Bixby Voice
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arbitrary data with Bixby Voice privilege.
1Samsung
1Push Service
Mar 6, 2025
Nov 7, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
Improper access control vulnerability in Samsung Push Service prior to 3.4.10 allows local attackers to get register ID to identify the device.
1Samsung
1Push Service
Mar 6, 2025
Nov 7, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access unique id.
1Samsung
1Account
Mar 6, 2025
Nov 7, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive information via implicit intent.
1Samsung
1Health
Nov 21, 2024
Nov 7, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows local attackers to access data.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds Write in read_block of vold prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper input validation vulnerability in ChooserActivity prior to SMR Nov-2023 Release 1 allows local attackers to read arbitrary files with system privilege.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
6.8 MEDIUM· v3
N/A· v2
Improper Input Validation with USB Gadget Interface prior to SMR Nov-2023 Release 1 allows a physical attacker to execute arbitrary code in Kernel.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper Certificate Validation in FotaAgent prior to SMR Nov-2023 Release1 allows remote attacker to intercept the network traffic including Firmware information.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.1 HIGH· v3
N/A· v2
Improper access control vulnerability in SmsController prior to SMR Nov-2023 Release1 allows local attackers to bypass restrictions on starting activities from the background.