Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-30690 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung CWE-20
7.8
2023-10-04 CVE-2023-30692 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities.
local
low complexity
samsung
7.8
2023-10-04 CVE-2023-30727 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control vulnerability in SecSettings prior to SMR Oct-2023 Release 1 allows attackers to enable Wi-Fi and connect arbitrary Wi-Fi without User Interaction.
network
low complexity
samsung
7.5
2023-10-04 CVE-2023-30731 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
low complexity
samsung
4.6
2023-10-04 CVE-2023-30732 Unspecified vulnerability in Samsung Android 13.0
Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial number.
local
low complexity
samsung
3.3
2023-10-04 CVE-2023-30733 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0
Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows local privileged attackers to perform code execution.
local
low complexity
samsung CWE-787
7.8
2023-10-04 CVE-2023-30734 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30735 Improper Preservation of Permissions vulnerability in Samsung Sassistant
Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access backup data in SAssistant.
local
low complexity
samsung CWE-281
3.3
2023-10-04 CVE-2023-30736 Unspecified vulnerability in Samsung Assistant
Improper authorization in PushMsgReceiver of Samsung Assistant prior to version 8.7.00.1 allows attacker to execute javascript interface.
network
low complexity
samsung
5.4
2023-10-04 CVE-2023-30737 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5