Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2022-10-07 CVE-2022-39848 Information Exposure vulnerability in Google Android 10.0/11.0/12.0
Exposure of sensitive information in AT_Distributor prior to SMR Oct-2022 Release 1 allows local attacker to access SerialNo via log.
local
low complexity
google CWE-200
3.3
2022-10-07 CVE-2022-39849 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control in knox_vpn_policy service prior to SMR Oct-2022 Release 1 allows allows unauthorized read of configuration data.
local
low complexity
google
3.3
2022-10-07 CVE-2022-39850 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control in mum_container_policy service prior to SMR Oct-2022 Release 1 allows allows unauthorized read of configuration data.
local
low complexity
google
3.3
2022-10-07 CVE-2022-39851 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in CocktailBarService prior to SMR Oct-2022 Release 1 allows local attacker to bind service that require BIND_REMOTEVIEWS permission.
local
low complexity
google
3.3
2022-10-07 CVE-2022-39856 Unspecified vulnerability in Google Android 12.0
Improper access control vulnerability in imsservice application prior to SMR Oct-2022 Release 1 allows local attackers to access call information.
local
low complexity
google
3.3
2022-10-07 CVE-2022-39859 Unspecified vulnerability in Samsung Uphelper Library
Implicit intent hijacking vulnerability in UPHelper library prior to version 3.0.12 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
3.3
2022-10-07 CVE-2022-39860 Unspecified vulnerability in Samsung Quick Share 13.1.2.4/3.5.14.18/3.5.16.20
Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to access sensitive information via implicit broadcast.
low complexity
samsung
3.5
2022-10-07 CVE-2022-39861 Missing Authorization vulnerability in Samsung Factorycamera 2.1.96
Unprotected Receiver in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to record video without camera privilege.
local
low complexity
samsung CWE-862
3.3
2022-10-07 CVE-2022-39872 Improper Handling of Exceptional Conditions vulnerability in Samsung Sharelive
Improper restriction of broadcasting Intent in ShareLive prior to version 13.2.03.5 leaks MAC address of the connected Bluetooth device.
local
low complexity
samsung CWE-755
3.3
2022-10-07 CVE-2022-39876 Information Exposure Through Log Files vulnerability in Samsung Reminder
Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to access device IMEI.
local
low complexity
samsung CWE-532
3.3