Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1176 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-42571 1 Samsung 1 Find My Mobile 2024-11-21 N/A 7.6 HIGH
Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.
CVE-2023-42570 1 Samsung 1 Android 2024-11-21 N/A 5.9 MEDIUM
Improper access control vulnerability in KnoxCustomManagerService prior to SMR Dec-2023 Release 1 allows attacker to access device SIM PIN.
CVE-2023-42569 1 Samsung 1 Android 2024-11-21 N/A 4.0 MEDIUM
Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.
CVE-2023-42568 1 Samsung 1 Android 2024-11-21 N/A 7.3 HIGH
Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.
CVE-2023-42567 1 Samsung 1 Android 2024-11-21 N/A 7.3 HIGH
Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.
CVE-2023-42566 1 Samsung 1 Android 2024-11-21 N/A 7.3 HIGH
Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-42565 1 Samsung 1 Android 2024-11-21 N/A 7.3 HIGH
Improper input validation vulnerability in Smart Clip prior to SMR Dec-2023 Release 1 allows local attackers with shell privilege to execute arbitrary code.
CVE-2023-42564 1 Samsung 1 Android 2024-11-21 N/A 6.6 MEDIUM
Improper access control in knoxcustom service prior to SMR Dec-2023 Release 1 allows attacker to send broadcast with system privilege.
CVE-2023-42563 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.
CVE-2023-42562 1 Samsung 1 Android 2024-11-21 N/A 6.7 MEDIUM
Integer overflow vulnerability in detectionFindFaceSupportMultiInstance of libFacePreProcessingjni.camera.samsung.so prior to SMR Dec-2023 Release 1 allows attacker to trigger heap overflow.
CVE-2023-42561 1 Samsung 1 Android 2024-11-21 N/A 7.1 HIGH
Heap out-of-bounds write vulnerability in bootloader prior to SMR Dec-2023 Release 1 allows a physical attacker to execute arbitrary code.
CVE-2023-42560 1 Samsung 1 Android 2024-11-21 N/A 7.4 HIGH
Heap out-of-bounds write vulnerability in dec_mono_audb of libsavsac.so prior to SMR Dec-2023 Release 1 allows an attacker to execute arbitrary code.
CVE-2023-42559 1 Samsung 1 Android 2024-11-21 N/A 4.9 MEDIUM
Improper exception management vulnerability in Knox Guard prior to SMR Dec-2023 Release 1 allows Knox Guard lock bypass via changing system time.
CVE-2023-42558 1 Samsung 1 Android 2024-11-21 N/A 6.0 MEDIUM
Out of bounds write vulnerability in HDCP in HAL prior to SMR Dec-2023 Release 1 allows attacker to perform code execution.
CVE-2023-42557 1 Samsung 1 Android 2024-11-21 N/A 5.6 MEDIUM
Out-of-bound write vulnerability in libIfaaCa prior to SMR Dec-2023 Release 1 allows local system attackers to execute arbitrary code.
CVE-2023-42556 1 Samsung 1 Android 2024-11-21 N/A 3.3 LOW
Improper usage of implicit intent in Contacts prior to SMR Dec-2023 Release 1 allows attacker to get sensitive information.
CVE-2023-42555 1 Samsung 1 Easysetup 2024-11-21 N/A 6.3 MEDIUM
Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.
CVE-2023-42552 1 Samsung 2 Android, Firewall 2024-11-21 N/A 4.4 MEDIUM
Implicit intent hijacking vulnerability in Firewall application prior to versions 12.1.00.24 in Android 11, 13.1.00.16 in Android 12 and 14.1.00.7 in Android 13 allows 3rd party application to tamper the database of Firewall.
CVE-2023-42551 1 Samsung 1 Account 2024-11-21 N/A 5.5 MEDIUM
Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
CVE-2023-42550 1 Samsung 1 Account 2024-11-21 N/A 5.5 MEDIUM
Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.