← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in SecSettings prior to SMR Nov-2023 Release 1 allows attackers to enable Wi-Fi and Wi-Fi Direct without User Interaction.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bound write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper Input Validation vulnerability in ProcessNvBuffering of libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper input validation vulnerability in ProcessWriteFile of libsec-ril prior to SMR Nov-2023 Release 1 allows local attackers to expose sensitive information.
1Samsung
1Android
Nov 21, 2024
Nov 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Arbitrary File Descriptor Write vulnerability in libsec-ril prior to SMR Nov-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
4Galaxy Book Firmware
Galaxy Book Odyssey FirmwareGalaxy Book Pro 360 Firmware+1 more
Nov 21, 2024
Oct 4, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
An improper input validation in UEFI Firmware prior to Firmware update Oct-2023 Release in Galaxy Book, Galaxy Book Pro, Galaxy Book Pro 360 and Galaxy Book Odyssey allows local attacker to execute SMM memory corruption.
1Samsung
1Health
Nov 21, 2024
Oct 4, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
1Samsung
1Samsung Assistant
Nov 21, 2024
Oct 4, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Improper authorization in PushMsgReceiver of Samsung Assistant prior to version 8.7.00.1 allows attacker to execute javascript interface. To trigger this vulnerability, user interaction is required.
1Samsung
1Sassistant
Nov 21, 2024
Oct 4, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access backup data in SAssistant.
1Samsung
1Health
Nov 21, 2024
Oct 4, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial number.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in SecSettings prior to SMR Oct-2023 Release 1 allows attackers to enable Wi-Fi and connect arbitrary Wi-Fi without User Interaction.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
1Samsung
1Android
Nov 21, 2024
Oct 4, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
1Samsung
1Exynos 2200 Firmware
Nov 21, 2024
Sep 28, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).
1Samsung
1Exynos 2200 Firmware
Nov 21, 2024
Sep 21, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Samsung Mobile Processor Exynos 2200 allows a GPU Use After Free.
1Samsung
1Memory Card & Ufd Authentication
Mar 6, 2025
Sep 18, 2023
N/A· v4
7.3 HIGH· v3
N/A· v2
A DLL hijacking vulnerability in Samsung Memory Card & UFD Authentication Utility PC Software before 1.0.1 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows to...Show more
A DLL hijacking vulnerability in Samsung Memory Card & UFD Authentication Utility PC Software before 1.0.1 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows to exploit this vulnerability.)Show less
1Samsung
6Exynos 1280 Firmware
Exynos 1380 FirmwareExynos 2100 Firmware+3 more
Nov 21, 2024
Sep 12, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
An issue was discovered in the NPU kernel driver in Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, and 1380. An integer overflow can bypass detection of error cases via a crafted application.