Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1631 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-20860 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper export of android application components vulnerability in TelephonyUI prior to SMR May-2024 Release 1 allows local attackers to reboot the device without proper permission.
CVE-2024-20859 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pictures without privilege.
CVE-2024-20858 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.
CVE-2024-20857 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application.
CVE-2024-20856 1 Samsung 1 Android 2026-06-17 N/A 4.3 MEDIUM
Improper Authentication vulnerability in Secure Folder prior to SMR May-2024 Release 1 allows physical attackers to access Secure Folder without proper authentication in a specific scenario.
CVE-2024-20855 1 Samsung 1 Android 2026-06-17 N/A 2.4 LOW
Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attackers to access unlocked screen for a while.
CVE-2024-20854 2 Google, Samsung 2 Android, Camera 2026-06-17 N/A 5.9 MEDIUM
Improper handling of insufficient privileges vulnerability in Samsung Camera prior to versions 12.1.0.31 in Android 12, 13.1.02.07 in Android 13, and 14.0.01.06 in Android 14 allows local attackers to access image data.
CVE-2024-20853 1 Samsung 1 Galaxy Themes 2026-06-17 N/A 5.1 MEDIUM
Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attackers to write arbitrary files to sandbox of ThemeStore.
CVE-2024-20852 1 Samsung 1 Smartthings 2026-06-17 N/A 5.9 MEDIUM
Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to access testing configuration.
CVE-2024-20851 1 Samsung 1 Cloud 2026-06-17 N/A 4.4 MEDIUM
Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch arbitrary activity with Samsung Data Store privilege.
CVE-2024-20850 1 Samsung 1 Samsung Pay 2026-06-17 N/A 6.2 MEDIUM
Use of Implicit Intent for Sensitive Communication in Samsung Pay prior to version 5.4.99 allows local attackers to access information of Samsung Pay.
CVE-2024-20849 1 Samsung 1 Android 2026-06-17 N/A 7.3 HIGH
Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2024-20848 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2024-20847 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to read sdcard information.
CVE-2024-20846 1 Samsung 1 Android 2026-06-17 N/A 5.9 MEDIUM
Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20845 1 Samsung 1 Android 2026-06-17 N/A 8.4 HIGH
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20844 1 Samsung 1 Android 2026-06-17 N/A 8.4 HIGH
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allows local attacker to execute arbitrary code.
CVE-2024-20843 1 Samsung 1 Android 2026-06-17 N/A 5.6 MEDIUM
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows local privileged attackers to execute arbitrary code.
CVE-2024-20842 1 Samsung 1 Android 2026-06-17 N/A 4.2 MEDIUM
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVE-2024-20841 1 Samsung 1 Account 2026-06-17 N/A 5.1 MEDIUM
Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.