Vulnerabilities > Samsung > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2024-11-06 CVE-2024-34682 Unspecified vulnerability in Samsung Android 14.0
Improper authorization in Settings prior to SMR Nov-2024 Release 1 allows physical attackers to access stored WiFi password in Maintenance Mode.
low complexity
samsung
2.4
2024-11-06 CVE-2024-34677 Insecure Storage of Sensitive Information vulnerability in Samsung Android 12.0/13.0/14.0
Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate.
local
low complexity
samsung CWE-922
3.3
2024-09-04 CVE-2024-34652 Incorrect Authorization vulnerability in Samsung Android 12.0/13.0/14.0
Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related to performance including app usage.
local
low complexity
samsung CWE-863
3.3
2024-09-04 CVE-2024-34650 Incorrect Authorization vulnerability in Samsung Android 14.0
Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to Edge panel.
local
low complexity
samsung CWE-863
3.3
2024-09-04 CVE-2024-34649 Unspecified vulnerability in Samsung Android 14.0
Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access an unlocked screen.
low complexity
samsung
2.4
2024-09-04 CVE-2024-34641 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper Export of Android Application Components in FeliCaTest prior to SMR Sep-2024 Release 1 allows local attackers to enable NFC configuration.
local
low complexity
samsung
3.3
2024-09-04 CVE-2024-34640 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control vulnerability in BGProtectManager prior to SMR Sep-2024 Release 1 allows local attackers to bypass restriction of process expiration.
local
low complexity
samsung
3.3
2024-08-07 CVE-2024-34618 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.
local
low complexity
samsung
3.3
2024-08-07 CVE-2024-34617 Incorrect Default Permissions vulnerability in Samsung Android 14.0
Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.
local
low complexity
samsung CWE-276
3.3
2024-07-02 CVE-2024-34586 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.
local
low complexity
samsung
3.3