Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36864 Unspecified vulnerability in Samsung Email
Improper access control and intent redirection in Samsung Email prior to 6.1.70.20 allows attacker to access specific formatted file and execute privileged behavior.
local
low complexity
samsung
7.8
2022-09-09 CVE-2022-36865 Unspecified vulnerability in Samsung Group Sharing 10.8.03.2
Improper access control in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to access device information.
local
low complexity
samsung
3.3
2022-09-09 CVE-2022-36866 Unspecified vulnerability in Samsung Group Sharing 10.8.03.2
Improper access control vulnerability in Broadcaster in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to identify the device.
local
low complexity
samsung
3.3
2022-09-09 CVE-2022-36867 Unspecified vulnerability in Samsung Editor Lite
Improper access control vulnerability in Editor Lite prior to version 4.0.40.14 allows attackers to access sensitive information.
local
low complexity
samsung
5.5
2022-09-09 CVE-2022-36869 Unspecified vulnerability in Samsung Contacts Provider
Improper access control vulnerability in ContactsDumpActivity of?Contacts Provider prior to version 12.7.59 allows attacker to access the file without permission.
local
low complexity
samsung
6.1
2022-09-09 CVE-2022-36870 Unspecified vulnerability in Samsung PAY and Samsung PAY KR
Pending Intent hijacking vulnerability in MTransferNotificationManager in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
local
low complexity
samsung
6.5
2022-09-09 CVE-2022-36871 Unspecified vulnerability in Samsung PAY and Samsung PAY KR
Pending Intent hijacking vulnerability in NotiCenterUtils in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
local
low complexity
samsung
6.5
2022-09-09 CVE-2022-36872 Unspecified vulnerability in Samsung PAY and Samsung PAY KR
Pending Intent hijacking vulnerability in SpayNotification in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
local
low complexity
samsung
6.5
2022-09-09 CVE-2022-36873 Unspecified vulnerability in Samsung Galaxy Watch Plugin 2.2.05.21033151/2.2.05.220126741/2.2.05.22012751
Improper restriction of broadcasting Intent in GalaxyStoreBridgePageLinker of?Waterplugin prior to version 2.2.11.22081151 leaks MAC address of the connected Bluetooth device.
low complexity
samsung
6.5
2022-09-09 CVE-2022-36874 Improper Handling of Exceptional Conditions vulnerability in Samsung Galaxy Watch Plugin 2.2.05.21033151/2.2.05.220126741/2.2.05.22012751
Improper Handling of Insufficient Permissions or Privileges vulnerability in Waterplugin prior to 2.2.11.22040751 allows attacker to access device IMEI and Serial number.
local
low complexity
samsung CWE-755
6.2