Vulnerabilities > Samsung > Internet

DATE CVE VULNERABILITY TITLE RISK
2024-03-05 CVE-2024-20837 Unspecified vulnerability in Samsung Internet
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.
local
low complexity
samsung
5.3
2024-03-05 CVE-2024-20838 Unspecified vulnerability in Samsung Internet
Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.
local
low complexity
samsung
7.8
2024-02-06 CVE-2024-20828 Incorrect Authorization vulnerability in Samsung Internet
Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication.
low complexity
samsung CWE-863
4.6
2023-08-10 CVE-2023-30704 Unspecified vulnerability in Samsung Internet
Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication.
low complexity
samsung
4.6
2023-07-06 CVE-2023-30674 Unspecified vulnerability in Samsung Internet
Improper configuration in Samsung Internet prior to version 21.0.0.41 allows attacker to bypass SameSite Cookie.
network
low complexity
samsung
6.5
2022-10-07 CVE-2022-39873 Unspecified vulnerability in Samsung Internet
Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add bookmarks in secret mode without user authentication.
low complexity
samsung
4.6
2022-06-07 CVE-2022-30738 Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Internet
Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing script.
network
low complexity
samsung CWE-754
4.3
2022-06-07 CVE-2022-30740 Insecure Storage of Sensitive Information vulnerability in Samsung Internet
Improper auto-fill algorithm in Samsung Internet prior to version 17.0.1.69 allows physical attackers to guess stored credit card numbers.
low complexity
samsung CWE-922
4.3
2022-04-11 CVE-2022-27839 Improper Authentication vulnerability in Samsung Internet
Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allows attackers to access bookmark tab without proper credentials.
local
low complexity
samsung CWE-287
4.0
2022-01-14 CVE-2022-22290 Improper Handling of Exceptional Conditions vulnerability in Samsung Internet
Incorrect download source UI in Downloads in Samsung Internet prior to 16.0.6.23 allows attackers to perform domain spoofing via a crafted HTML page.
network
low complexity
samsung CWE-755
6.5