Vulnerabilities (CVE)

Filtered by vendor Samsung Subscribe
Total 1631 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-21501 1 Samsung 1 Android 2026-06-17 N/A 8.2 HIGH
Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-21500 1 Samsung 1 Android 2026-06-17 N/A 6.0 MEDIUM
Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet memory.
CVE-2023-21499 1 Samsung 1 Android 2026-06-17 N/A 8.2 HIGH
Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.
CVE-2023-21498 1 Samsung 1 Android 2026-06-17 N/A 6.0 MEDIUM
Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet memory.
CVE-2023-21497 1 Samsung 1 Android 2026-06-17 N/A 4.4 MEDIUM
Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the memory address.
CVE-2023-21496 1 Samsung 1 Android 2026-06-17 N/A 6.1 MEDIUM
Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug level.
CVE-2023-21495 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Improper access control vulnerability in Knox Enrollment Service prior to SMR May-2023 Release 1 allow attacker install KSP app when device admin is set.
CVE-2023-21494 1 Samsung 2 Android, Exynos 2026-06-17 N/A 5.6 MEDIUM
Potential buffer overflow vulnerability in auth api in mm_Authentication.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
CVE-2023-21493 1 Samsung 1 Android 2026-06-17 N/A 6.8 MEDIUM
Improper access control vulnerability in SemShareFileProvider prior to SMR May-2023 Release 1 allows local attackers to access protected data.
CVE-2023-21492 1 Samsung 1 Android 2026-06-17 N/A 4.4 MEDIUM
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.
CVE-2023-21491 1 Samsung 1 Android 2026-06-17 N/A 8.5 HIGH
Improper access control vulnerability in ThemeManager prior to SMR May-2023 Release 1 allows local attackers to write arbitrary files with system privilege.
CVE-2023-21490 1 Samsung 1 Android 2026-06-17 N/A 4.7 MEDIUM
Improper access control in GearManagerStub prior to SMR May-2023 Release 1 allows a local attacker to delete applications installed by watchmanager.
CVE-2023-21489 1 Samsung 1 Android 2026-06-17 N/A 7.1 HIGH
Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary code.
CVE-2023-21488 1 Samsung 1 Android 2026-06-17 N/A 4.4 MEDIUM
Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in Tips.
CVE-2023-21487 1 Samsung 1 Android 2026-06-17 N/A 5.1 MEDIUM
Improper access control vulnerability in Telephony framework prior to SMR May-2023 Release 1 allows local attackers to change a call setting.
CVE-2023-21486 1 Samsung 1 Android 2026-06-17 N/A 5.3 MEDIUM
Improper export of android application components vulnerability in ImagePreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.
CVE-2023-21485 1 Samsung 1 Android 2026-06-17 N/A 5.3 MEDIUM
Improper export of android application components vulnerability in VideoPreviewActivity in Call Settings to SMR May-2023 Release 1 allows physical attackers to access some media data stored in sandbox.
CVE-2023-21484 1 Samsung 1 Android 2026-06-17 N/A 5.1 MEDIUM
Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation.
CVE-2023-21483 1 Samsung 1 Galaxy Store 2026-06-17 N/A 6.4 MEDIUM
Improper Access Control vulnerability in Galaxy Store prior to version 4.5.53.6 allows local attacker to access protected data using exported service.
CVE-2023-21482 2 Google, Samsung 2 Android, Camera 2026-06-17 N/A 6.1 MEDIUM
Missing authorization vulnerability in Camera prior to versions 11.1.02.18 in Android 11, 12.1.03.8 in Android 12 and 13.1.01.4 in Android 13 allows physical attackers to install package through Galaxy store before completion of Setup wizard.