Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1631 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21080 1 Samsung 1 Android 2026-06-17 N/A 6.2 MEDIUM
Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access files with Dynamic Lockscreen's privilege.
CVE-2025-21079 1 Samsung 1 Members 2026-06-17 N/A 7.1 HIGH
Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
CVE-2025-21078 1 Samsung 1 Smart Switch 2026-06-17 N/A 8.8 HIGH
Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.
CVE-2025-21077 1 Samsung 1 Email 2026-06-17 N/A 3.3 LOW
Improper input validation in Samsung Email prior to version 6.2.06.0 allows local attackers to launch arbitrary activity with Samsung Email privilege.
CVE-2025-21076 1 Samsung 1 Account 2026-06-17 N/A 5.5 MEDIUM
Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account. User interaction is required for triggering this vulnerability.
CVE-2025-21075 1 Samsung 1 Android 2026-06-17 N/A 4.3 MEDIUM
Out-of-bounds write in libimagecodec.quram.so prior to SMR Nov-2025 Release 1 allows remote attackers to access out-of-bounds memory.
CVE-2025-21074 1 Samsung 1 Android 2026-06-17 N/A 4.3 MEDIUM
Out-of-bounds read in libimagecodec.quram.so prior to SMR Nov-2025 Release 1 allows remote attackers to access out-of-bounds memory.
CVE-2025-21073 1 Samsung 1 Android 2026-06-17 N/A 6.8 MEDIUM
Insecure default configuration in USB connection mode prior to SMR Nov-2025 Release 1 allows privileged physical attackers to access user data. User interaction is required for triggering this vulnerability.
CVE-2025-21072 1 Samsung 1 Android 2026-06-17 N/A 5.7 MEDIUM
Out-of-bounds write in decoding metadata in fingerprint trustlet prior to SMR Dec-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-21071 1 Samsung 1 Android 2026-06-17 N/A 5.7 MEDIUM
Out-of-bounds write in handling opcode in fingerprint trustlet prior to SMR Nov-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2025-21070 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-of-bounds memory.
CVE-2025-21069 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21068 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21067 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21066 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21064 1 Samsung 1 Smart Switch 2026-06-17 N/A 8.8 HIGH
Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
CVE-2025-21063 1 Samsung 2 Android, Voice Recorder 2026-06-17 N/A 4.6 MEDIUM
Improper access control in Samsung Voice Recorder prior to version 21.5.73.12 in Android 15 and 21.5.81.40 in Android 16 allows physical attackers to access recording files on the lock screen.
CVE-2025-21062 1 Samsung 1 Smart Switch 2026-06-17 N/A 7.8 HIGH
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability.
CVE-2025-21061 1 Samsung 1 Smart Switch 2026-06-17 N/A 7.1 HIGH
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability.
CVE-2025-21060 1 Samsung 1 Smart Switch 2026-06-17 N/A 5.5 MEDIUM
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.