Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2024-01-04 CVE-2024-20803 Improper Authentication vulnerability in Samsung Android 11.0/12.0
Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing process without user interaction.
low complexity
samsung CWE-287
6.5
2024-01-04 CVE-2024-20804 Path Traversal vulnerability in Samsung Android 11.0/12.0
Path traversal vulnerability in FileUriConverter of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.
local
low complexity
samsung CWE-22
5.5
2024-01-04 CVE-2024-20805 Path Traversal vulnerability in Samsung Android 11.0/12.0
Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.
local
low complexity
samsung CWE-22
5.5
2024-01-04 CVE-2024-20806 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control in Notification service prior to SMR Jan-2024 Release 1 allows local attacker to access notification data.
local
low complexity
samsung
5.5
2024-01-04 CVE-2024-20807 Unspecified vulnerability in Samsung Email 6.1.82.0
Implicit intent hijacking vulnerability in Samsung Email prior to version 6.1.90.16 allows local attacker to get sensitive information.
local
low complexity
samsung
3.3
2024-01-04 CVE-2024-20808 Unspecified vulnerability in Samsung Nearby Device Scanning
Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.
local
low complexity
samsung
5.5
2024-01-04 CVE-2024-20809 Unspecified vulnerability in Samsung Nearby Device Scanning
Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.
local
low complexity
samsung
5.5
2023-12-13 CVE-2023-42483 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Samsung products
A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, and Exynos 1380 can cause unexpected termination of a system.
local
high complexity
samsung CWE-367
4.7
2023-12-13 CVE-2023-43122 Out-of-bounds Write vulnerability in Samsung products
Samsung Mobile Processor and Wearable Processor (Exynos 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, and W920) allow Information Disclosure in the Bootloader.
low complexity
samsung CWE-787
4.6
2023-12-13 CVE-2023-45864 Race Condition vulnerability in Samsung products
A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200, 1280, and 1380 allows unintended modifications of values within certain areas.
local
high complexity
samsung CWE-362
4.7