← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Android
Nov 21, 2024
Aug 10, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in SLocationService prior to SMR Aug-2023 Release 1 allows local attacker to update fake location.
1Samsung
5S3nrn4v Firmware
S3nrn82 FirmwareS3nsen4 Firmware+2 more
Nov 21, 2024
Aug 8, 2023
N/A· v4
4.3 MEDIUM· v3
N/A· v2
An issue was discovered in Samsung NFC S3NRN4V, S3NSN4V, S3NSEN4, SEN82AB, and S3NRN82. A buffer copy without checking its input size can cause an NFC service restart.
1Samsung
33Fgn1115 Wp Wh Firmware
Fgn1122 Cd FirmwareFgn1122 Sa Firmware+30 more
Nov 21, 2024
Jul 20, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, without authentication, exposing sensitive information such as the command history and screenshot of the...Show more
The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, without authentication, exposing sensitive information such as the command history and screenshot of the file being processed. This affects N-Series N1115 Wallplate Video Encoder before 1.15.61, N-Series N1x22A Video Encoder/Decoder before 1.15.61, N-Series N1x33A Video Encoder/Decoder before 1.15.61, N-Series N1x33 Video Encoder/Decoder before 1.15.61, N-Series N2x35 Video Encoder/Decoder before 1.15.61, N-Series N2x35A Video Encoder/Decoder before 1.15.61, N-Series N2xx2 Video Encoder/Decoder before 1.15.61, N-Series N2xx2A Video Encoder/Decoder before 1.15.61, N-Series N3000 Video Encoder/Decoder before 2.12.105, and N-Series N4321 Audio Transceiver before 1.00.06.Show less
1Samsung
1Calendar
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Potential zip path traversal vulnerability in Calendar application prior to version 12.4.07.15 in Android 13 allows attackers to write arbitrary file.
1Samsung
1Pass
Nov 21, 2024
Jul 6, 2023
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass on a certain state of an unlocked device.
1Samsung
1Pass
Nov 21, 2024
Jul 6, 2023
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass.
1Samsung
1Pass
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed.
1Samsung
1Internet
Nov 21, 2024
Jul 6, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper configuration in Samsung Internet prior to version 21.0.0.41 allows attacker to bypass SameSite Cookie.
1Samsung
1Smart Switch Pc
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.23052_1 allows local attackers to delete arbitrary directory using directory junction.
1Samsung
1Smart Switch Pc
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper privilege management vulnerability in Samsung Smart Switch for Windows Installer prior to version 4.3.23043_3 allows attackers to cause permanent DoS via directory junction.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local attackers to downgrade installed application.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds Write in BuildIpcFactoryDeviceTestEvent of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds Write in DoOemFactorySendFactoryTestResult of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Out-of-bounds Write in BuildOemSecureSimLockResponse of libsec-ril prior to SMR Jul-2023 Release 1 allows local attacker to execute arbitrary code.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker to send broadcast with system privilege.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation vulnerability in DoOemImeiSetPreconfig in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Improper input validation vulnerability in OnOemServiceMode in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds read.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation vulnerability in RegisteredMSISDN prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Improper input validation vulnerability in OemPersonalizationSetLock in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds write.
1Samsung
1Android
Nov 21, 2024
Jul 6, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Exposure of Sensitive Information vulnerability in getChipIds in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.