Vulnerabilities > Samsung > Notes > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-05 CVE-2022-36831 Path Traversal vulnerability in Samsung Notes
Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.
local
low complexity
samsung CWE-22
5.5
2021-10-06 CVE-2021-25494 Classic Buffer Overflow vulnerability in Samsung Notes
A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
local
low complexity
samsung CWE-120
4.6
2021-10-06 CVE-2021-25495 Out-of-bounds Write vulnerability in Samsung Notes
A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
local
low complexity
samsung CWE-787
4.6
2021-10-06 CVE-2021-25496 Classic Buffer Overflow vulnerability in Samsung Notes
A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
local
low complexity
samsung CWE-120
4.6
2021-10-06 CVE-2021-25497 Classic Buffer Overflow vulnerability in Samsung Notes
A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
local
low complexity
samsung CWE-120
4.6
2021-10-06 CVE-2021-25498 Classic Buffer Overflow vulnerability in Samsung Notes
A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
local
low complexity
samsung CWE-120
4.6
2021-03-25 CVE-2021-25367 Path Traversal vulnerability in Samsung Notes 2.0.02.31
Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without permission.
network
low complexity
samsung CWE-22
5.5
2021-03-25 CVE-2021-25355 Incorrect Default Permissions vulnerability in Samsung Notes 2.0.02.31
Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action without permission via hijacking the PendingIntent.
local
low complexity
samsung CWE-276
4.6
2018-09-24 CVE-2018-10501 Path Traversal vulnerability in Samsung Notes
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Notes Fixed in version 2.0.02.31.
local
samsung CWE-22
4.4