Filtered by vendor Samsung
Subscriptions
Total
1110 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-20889 | 1 Samsung | 1 Android | 2024-11-21 | 5.9 Medium |
Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices. | ||||
CVE-2024-20888 | 1 Samsung | 1 Android | 2024-11-21 | 7.8 High |
Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability. | ||||
CVE-2024-20867 | 1 Samsung | 1 Samsung Email | 2024-11-21 | 5.5 Medium |
Improper privilege management vulnerability in Samsung Email prior to version 6.1.91.14 allows local attackers to access sensitive information. | ||||
CVE-2024-20866 | 1 Samsung | 1 Android | 2024-11-21 | 5.7 Medium |
Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step. | ||||
CVE-2024-20828 | 1 Samsung | 1 Internet | 2024-11-21 | 2.4 Low |
Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication. | ||||
CVE-2024-20827 | 1 Samsung | 1 Gallery | 2024-11-21 | 4.6 Medium |
Improper access control vulnerability in Samsung Gallery prior to version 14.5.04.4 allows physical attackers to access the picture using physical keyboard on the lockscreen. | ||||
CVE-2024-20826 | 1 Samsung | 1 Uphelper Library | 2024-11-21 | 5.5 Medium |
Implicit intent hijacking vulnerability in UPHelper library prior to version 4.0.0 allows local attackers to access sensitive information via implicit intent. | ||||
CVE-2024-20825 | 1 Samsung | 1 Galaxy Store | 2024-11-21 | 5.5 Medium |
Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | ||||
CVE-2024-20824 | 1 Samsung | 1 Galaxy Store | 2024-11-21 | 5.5 Medium |
Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | ||||
CVE-2024-20823 | 1 Samsung | 1 Galaxy Store | 2024-11-21 | 5.5 Medium |
Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | ||||
CVE-2024-20822 | 1 Samsung | 1 Galaxy Store | 2024-11-21 | 5.5 Medium |
Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | ||||
CVE-2024-20820 | 1 Samsung | 1 Android | 2024-11-21 | 4.4 Medium |
Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Out-Of-Bounds read. | ||||
CVE-2024-20819 | 1 Samsung | 1 Android | 2024-11-21 | 6.6 Medium |
Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. | ||||
CVE-2024-20818 | 1 Samsung | 1 Android | 2024-11-21 | 6.6 Medium |
Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. | ||||
CVE-2024-20817 | 1 Samsung | 1 Android | 2024-11-21 | 6.6 Medium |
Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attackers to trigger buffer overflow. | ||||
CVE-2024-20816 | 1 Samsung | 1 Android | 2024-11-21 | 8 High |
Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness. | ||||
CVE-2024-20815 | 1 Samsung | 1 Android | 2024-11-21 | 8 High |
Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness. | ||||
CVE-2024-20814 | 1 Samsung | 1 Android | 2024-11-21 | 4 Medium |
Out-of-bounds Read in padmd_vld_ac_prog_refine of libpadm.so prior to SMR Feb-2024 Release 1 allows local attackers access unauthorized information. | ||||
CVE-2024-20813 | 1 Samsung | 1 Android | 2024-11-21 | 8.4 High |
Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. | ||||
CVE-2024-20812 | 1 Samsung | 1 Android | 2024-11-21 | 8.4 High |
Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. |