Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2022-08-05 CVE-2022-36832 Unspecified vulnerability in Samsung Cameralyzer 3.2.0/3.3.0/3.4.0
Improper access control vulnerability in WebApp in Cameralyzer prior to versions 3.2.22, 3.3.22, 3.4.22 and 3.5.51 allows attackers to access external storage as Cameralyzer privilege.
local
low complexity
samsung
3.3
2022-08-05 CVE-2022-36833 Improper Privilege Management vulnerability in Samsung Gameoptimizingservice
Improper Privilege Management vulnerability in Game Optimizing Service prior to versions 3.3.04.0 in Android 10, and 3.5.04.8 in Android 11 and above allows local attacker to execute hidden function for developer by changing package name.
local
low complexity
samsung CWE-269
7.8
2022-08-05 CVE-2022-36834 Information Exposure vulnerability in Samsung Game Launcher
Exposure of Sensitive Information vulnerability in Game Launcher prior to version 6.0.07 allows local attacker to access app data with user interaction.
local
low complexity
samsung CWE-200
5.0
2022-08-05 CVE-2022-36835 Unspecified vulnerability in Samsung Internet Browser
Implicit Intent hijacking vulnerability in Samsung Internet Browser prior to version 17.0.7.34 allows attackers to access arbitrary files.
local
low complexity
samsung
3.3
2022-08-05 CVE-2022-36836 Missing Authorization vulnerability in Samsung Charm Firmware
Unprotected provider vulnerability in Charm by Samsung prior to version 1.2.3 allows attackers to read connection state without permission.
local
low complexity
samsung CWE-862
5.5
2022-08-05 CVE-2022-36837 Unspecified vulnerability in Samsung Email
Intent redirection vulnerability using implicit intent in Samsung email prior to version 6.1.70.20 allows attacker to get sensitive information.
local
low complexity
samsung
5.5
2022-08-05 CVE-2022-36838 Unspecified vulnerability in Samsung Galaxy Wearable
Implicit Intent hijacking vulnerability in Galaxy Wearable prior to version 2.2.50 allows attacker to get sensitive information.
low complexity
samsung
4.6
2022-08-05 CVE-2022-36839 SQL Injection vulnerability in Samsung Checkout
SQL injection vulnerability via IAPService in Samsung Checkout prior to version 5.0.53.1 allows attackers to access IAP information.
local
low complexity
samsung CWE-89
5.5
2022-08-05 CVE-2022-36840 Uncontrolled Search Path Element vulnerability in Samsung Update
DLL hijacking vulnerability in Samsung Update Setup prior to version 2.2.9.50 allows attackers to execute arbitrary code.
local
low complexity
samsung CWE-427
7.8
2022-08-04 CVE-2022-35858 Memory Leak vulnerability in Samsung Mtower 0.3.0
The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to trigger a memory overwrite, denial of service, and information disclosure by invoking the function TEE_PopulateTransientObject with a large number in the parameter attrCount.
local
low complexity
samsung CWE-401
7.8