Search Results (145 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-30691 1 Samsung 2 Android, Samsung Mobile Devices 2024-11-21 8.4 High
Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to privilege escalation.
CVE-2023-30689 2 Samsung, Samsung Mobile 2 Android, Samsung Mobile Devices 2024-11-21 6.7 Medium
Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30688 2 Samsung, Samsung Mobile 2 Android, Samsung Mobile Devices 2024-11-21 6.7 Medium
Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30687 2 Samsung, Samsung Mobile 2 Android, Samsung Mobile Devices 2024-11-21 6.7 Medium
Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30686 2 Samsung, Samsung Mobile 2 Android, Samsung Mobile Devices 2024-11-21 6.7 Medium
Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code.
CVE-2023-30680 2 Samsung, Samsung Mobile 2 Android, Samsung Mobile Devices 2024-11-21 8.4 High
Improper privilege management vulnerability in MMIGroup prior to SMR Aug-2023 Release 1 allows code execution with privilege.
CVE-2022-36877 1 Samsung 1 Samsung Members 2024-11-21 2.8 Low
Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local attackers to access device identification via log.
CVE-2022-36876 1 Samsung 1 Samsung Pass 2024-11-21 1.8 Low
Improper authorization in UPI payment in Samsung Pass prior to version 4.0.04.10 allows physical attackers to access account list without authentication.
CVE-2022-36872 1 Samsung 2 Samsung Pay, Samsung Pay Kr 2024-11-21 5 Medium
Pending Intent hijacking vulnerability in SpayNotification in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
CVE-2022-36871 1 Samsung 2 Samsung Pay, Samsung Pay Kr 2024-11-21 5 Medium
Pending Intent hijacking vulnerability in NotiCenterUtils in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
CVE-2022-36870 1 Samsung 2 Samsung Pay, Samsung Pay Kr 2024-11-21 5 Medium
Pending Intent hijacking vulnerability in MTransferNotificationManager in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
CVE-2022-36864 1 Samsung 1 Samsung Email 2024-11-21 4 Medium
Improper access control and intent redirection in Samsung Email prior to 6.1.70.20 allows attacker to access specific formatted file and execute privileged behavior.
CVE-2022-36851 1 Samsung 1 Samsung Pass 2024-11-21 3.9 Low
Improper access control vulnerability in Samsung pass prior to version 4.0.03.1 allow physical attackers to access data of Samsung pass on a certain state of an unlocked device.
CVE-2022-36837 1 Samsung 1 Samsung Email 2024-11-21 6.2 Medium
Intent redirection vulnerability using implicit intent in Samsung email prior to version 6.1.70.20 allows attacker to get sensitive information.
CVE-2022-36835 1 Samsung 1 Samsung Internet Browser 2024-11-21 3.3 Low
Implicit Intent hijacking vulnerability in Samsung Internet Browser prior to version 17.0.7.34 allows attackers to access arbitrary files.
CVE-2022-33706 1 Samsung 1 Samsung Gallery 2024-11-21 2.4 Low
Improper access control vulnerability in Samsung Gallery prior to version 13.1.05.8 allows physical attackers to access the pictures using S Pen air gesture.
CVE-2022-30730 1 Samsung 1 Samsung Pass 2024-11-21 4.6 Medium
Improper authorization in Samsung Pass prior to 1.0.00.33 allows physical attackers to acess account list without authentication.
CVE-2022-28778 1 Samsung 1 Samsung Security Supporter 2024-11-21 4.4 Medium
Improper access control vulnerability in Samsung Security Supporter prior to version 1.2.40.0 allows attacker to set the arbitrary folder as Secret Folder without Samsung Security Supporter permission
CVE-2022-28775 1 Samsung 1 Samsung Flow 2024-11-21 5.1 Medium
Improper access control vulnerability in Samsung Flow prior to version 4.8.06.5 allows attacker to write the file without Samsung Flow permission.
CVE-2022-28543 1 Samsung 1 Samsung Flow 2024-11-21 4 Medium
Path traversal vulnerability in Samsung Flow prior to version 4.8.07.4 allows local attackers to read arbitrary files as Samsung Flow permission.