Filtered by vendor Samsung
Subscriptions
Total
1083 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-21513 | 1 Samsung | 1 Android | 2024-08-02 | 6.1 Medium |
Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition. | ||||
CVE-2023-21502 | 1 Samsung | 1 Android | 2024-08-02 | 5.7 Medium |
Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging commands. | ||||
CVE-2023-21508 | 1 Samsung | 1 Samsung Blockchain Keystore | 2024-08-02 | 6.7 Medium |
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code. | ||||
CVE-2023-21518 | 1 Samsung | 1 Searchwidget | 2024-08-02 | 4.4 Medium |
Improper access control vulnerability in SearchWidget prior to version 3.3 in China models allows untrusted applications to start arbitrary activity. | ||||
CVE-2023-21507 | 1 Samsung | 1 Samsung Blockchain Keystore | 2024-08-02 | 4.4 Medium |
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory. | ||||
CVE-2023-21499 | 1 Samsung | 1 Android | 2024-08-02 | 8.2 High |
Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code. | ||||
CVE-2023-21489 | 1 Samsung | 1 Android | 2024-08-02 | 7.1 High |
Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary code. | ||||
CVE-2023-21496 | 1 Samsung | 1 Android | 2024-08-02 | 6.1 Medium |
Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug level. | ||||
CVE-2023-21492 | 1 Samsung | 1 Android | 2024-08-02 | 4.4 Medium |
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR. | ||||
CVE-2023-21458 | 1 Samsung | 1 Android | 2024-08-02 | 6.2 Medium |
Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected intent. | ||||
CVE-2023-21426 | 1 Samsung | 1 Android | 2024-08-02 | 4.3 Medium |
Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN. | ||||
CVE-2023-21449 | 1 Samsung | 1 Android | 2024-08-02 | 4 Medium |
Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper permission. | ||||
CVE-2023-21488 | 1 Samsung | 1 Android | 2024-08-02 | 4.4 Medium |
Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in Tips. | ||||
CVE-2023-21484 | 1 Samsung | 1 Android | 2024-08-02 | 5.1 Medium |
Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation. | ||||
CVE-2023-21432 | 1 Samsung | 1 Smart Things | 2024-08-02 | 4.2 Medium |
Improper access control vulnerabilities in Smart Things prior to 1.7.93 allows to attacker to invite others without authorization of the owner. | ||||
CVE-2023-21454 | 1 Samsung | 1 Android | 2024-08-02 | 2.4 Low |
Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text history on the lockscreen. | ||||
CVE-2023-21456 | 1 Samsung | 1 Android | 2024-08-02 | 9 Critical |
Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrary file with system uid. | ||||
CVE-2023-21421 | 1 Samsung | 1 Android | 2024-08-02 | 5.9 Medium |
Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2023 Release 1 allows attacker to access device SIM PIN. | ||||
CVE-2023-21437 | 1 Samsung | 1 Android | 2024-08-02 | 4 Medium |
Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to access sensitive information via implicit broadcast. | ||||
CVE-2023-21450 | 1 Samsung | 1 One Hand Operation \+ | 2024-08-02 | 2.3 Low |
Missing Authorization vulnerability in One Hand Operation + prior to version 6.1.21 allows multi-users to access owner's widget without authorization via gesture setting. |