Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-42554 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.
low complexity
samsung CWE-287
6.8
2023-11-07 CVE-2023-42555 Unspecified vulnerability in Samsung Easysetup
Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30690 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung CWE-20
7.8
2023-10-04 CVE-2023-30692 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2023-10-04 CVE-2023-30727 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control vulnerability in SecSettings prior to SMR Oct-2023 Release 1 allows attackers to enable Wi-Fi and connect arbitrary Wi-Fi without User Interaction.
network
low complexity
samsung
7.5
2023-10-04 CVE-2023-30731 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
low complexity
samsung
4.6
2023-10-04 CVE-2023-30732 Unspecified vulnerability in Samsung Android 13.0
Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial number.
local
low complexity
samsung
3.3
2023-10-04 CVE-2023-30733 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.
local
low complexity
samsung CWE-787
7.8
2023-10-04 CVE-2023-30734 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30735 Improper Preservation of Permissions vulnerability in Samsung Sassistant
Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access backup data in SAssistant.
local
low complexity
samsung CWE-281
3.3