Vulnerabilities > Samsung > Android

DATE CVE VULNERABILITY TITLE RISK
2024-09-04 CVE-2024-34650 Incorrect Authorization vulnerability in Samsung Android 14.0
Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to Edge panel.
local
low complexity
samsung CWE-863
3.3
2024-09-04 CVE-2024-34651 Incorrect Authorization vulnerability in Samsung Android 12.0/13.0/14.0
Improper authorization in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access restricted data in My Files.
local
low complexity
samsung CWE-863
5.5
2024-09-04 CVE-2024-34652 Incorrect Authorization vulnerability in Samsung Android 12.0/13.0/14.0
Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related to performance including app usage.
local
low complexity
samsung CWE-863
3.3
2024-09-04 CVE-2024-34653 Path Traversal vulnerability in Samsung Android 12.0/13.0/14.0
Path Traversal in My Files prior to SMR Sep-2024 Release 1 allows physical attackers to access directories with My Files' privilege.
low complexity
samsung CWE-22
4.6
2024-09-04 CVE-2024-34654 Unspecified vulnerability in Samsung Android 13.0/14.0
Improper Export of android application component in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access files with My Files' privilege.
local
low complexity
samsung
5.5
2024-09-04 CVE-2024-34655 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to access privileged API related to UniversalCredentialManager.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34604 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in LedCoverService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34605 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in SamsungHealthService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34606 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5
2024-08-07 CVE-2024-34607 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in SamsungNotesService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
local
low complexity
samsung
5.5