Vulnerabilities > Samsung > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2023-08-10 CVE-2023-30700 Unspecified vulnerability in Samsung Android 11.0/12.0
PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30685 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control vulnerability in Telecom prior to SMR Aug-2023 Release 1 allows local attakcers to change TTY mode.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30684 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call acceptRingingCall API without permission.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30683 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call endCall API without permission.
local
low complexity
samsung
3.3
2023-08-10 CVE-2023-30682 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call silenceRinger API without permission.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30667 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker to send broadcast with system privilege.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30640 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change confiugration.
local
low complexity
samsung
3.3
2023-06-28 CVE-2023-21512 Incorrect Default Permissions vulnerability in Samsung Android 11.0/12.0/13.0
Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access permission.
local
low complexity
samsung CWE-276
3.3
2023-05-04 CVE-2023-21487 Improper Authentication vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in Telephony framework prior to SMR May-2023 Release 1 allows local attackers to change a call setting.
local
low complexity
samsung CWE-287
3.3
2023-03-16 CVE-2023-21458 Improper Privilege Management vulnerability in Samsung Android 11.0/12.0/13.0
Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected intent.
local
low complexity
samsung CWE-269
3.3