← Back

Samsung

samsung

1,506 CVEs • 2,866 products

Products (2,866)

Click to collapse
Toggle
Android
android
Notes
notes
X14j Firmware
x14j_firmware
Galaxy Store
galaxy_store
Internet
internet
Account
account
Escargot
escargot
Wear Os
wear_os
Smartthings
smartthings
Members
members
Mtower
mtower
Smart Switch
smart_switch
Kies
kies
Health
health
Pass
pass
Email
email
Magician
magician
Cloud
cloud
Gallery
gallery
One
one
Camera
camera
Flow
flow
Samsung Email
samsung_email
Tizenrt
tizenrt
Group Sharing
group_sharing
Samsung Pass
samsung_pass
Quick Share
quick_share
Calendar
calendar
Net I Viewer
net-i_viewer
Smartviewer
smartviewer
Knox
knox
Galaxy Apps
galaxy_apps
Exynos
exynos
Samsung Flow
samsung_flow
Samsung Pay
samsung_pay
Myfiles
myfiles
Sassistant
sassistant
Rlottie
rlottie
Smart Viewer
smart_viewer

CVEs (1,506)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Samsung
1Account
Nov 21, 2024
Oct 7, 2022
N/A· v4
4.4 MEDIUM· v3
N/A· v2
Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
1Samsung
1Account
Nov 21, 2024
Oct 7, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
1Samsung
1Internet
Nov 21, 2024
Oct 7, 2022
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add bookmarks in secret mode without user authentication.
1Samsung
1Sharelive
Nov 21, 2024
Oct 7, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
Improper restriction of broadcasting Intent in ShareLive prior to version 13.2.03.5 leaks MAC address of the connected Bluetooth device.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcasts.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via PUSH_MESSAGE_RECEIVED broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via REMOVE_PERSISTENT_BANNER broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via SHOW_PERSISTENT_BANNER broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in ContentsSharingActivity.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.
1Samsung
1Smartthings
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper access control vulnerability in WifiSetupLaunchHelper in SmartThings prior to version 1.7.89.25 allows attackers to access sensitive information via implicit intent.
1Samsung
1Account
Nov 21, 2024
Oct 7, 2022
N/A· v4
4.7 MEDIUM· v3
N/A· v2
Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content providers without permission.
1Samsung
1Dynamic Lockscreen
Nov 21, 2024
Oct 7, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Improper authorization in Dynamic Lockscreen prior to SMR Sep-2022 Release 1 in Android R(11) and 3.3.03.66 in Android S(12) allows unauthorized use of javascript interface api.
1Samsung
1Factorycamera
Nov 21, 2024
Oct 7, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
Unprotected Receiver in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to record video without camera privilege.
1Samsung
1Quick Share
Nov 21, 2024
Oct 7, 2022
N/A· v4
3.5 LOW· v3
N/A· v2
Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to access sensitive information via implicit broadcast.
1Samsung
1Uphelper Library
Nov 21, 2024
Oct 7, 2022
N/A· v4
3.3 LOW· v3
N/A· v2
Implicit intent hijacking vulnerability in UPHelper library prior to version 3.0.12 allows attackers to access sensitive information via implicit intent.
1Samsung
1Factorycamera
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to write arbitrary file as FactoryCamera privilege.
1Samsung
1Factorycamerafb
Nov 21, 2024
Oct 7, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Improper access control vulnerability in CameraTestActivity in FactoryCameraFB prior to version 3.5.51 allows attackers to access broadcasting Intent as system uid privilege.
1Samsung
1Tizenrt
Nov 21, 2024
Sep 29, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). l2_packet_receive_timeout in wpa_supplicant/src/l2_packet/l2_packet_pcap.c has a missing check on the return value of pcap_dispatch, leading to a...Show more
An issue was discovered in Samsung TizenRT through 3.0_GBM (and 3.1_PRE). l2_packet_receive_timeout in wpa_supplicant/src/l2_packet/l2_packet_pcap.c has a missing check on the return value of pcap_dispatch, leading to a denial of service (malfunction).Show less