Vulnerabilities > Samsung > Account > High

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2022-30732 Exposure of Resource to Wrong Sphere vulnerability in Samsung Account
Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive information via onActivityResult.
network
low complexity
samsung CWE-668
7.5
2022-06-07 CVE-2022-30735 Improper Privilege Management vulnerability in Samsung Account
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without permission.
network
low complexity
samsung CWE-269
7.5
2021-04-09 CVE-2021-25381 Incorrect Default Permissions vulnerability in Samsung Account 10.8.0.4/12.1.1.3
Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
local
low complexity
samsung CWE-276
7.8