Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2021-07-08 CVE-2021-25440 Unspecified vulnerability in Samsung Factorycamerafb
Improper access control vulnerability in FactoryCameraFB prior to version 3.4.74 allows untrusted applications to access arbitrary files with an escalated privilege.
local
low complexity
samsung
7.8
2021-07-08 CVE-2021-25441 Improper Input Validation vulnerability in Samsung AR Emoji Editor 4.4.03.5
Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to access arbitrary files with an escalated privilege.
local
low complexity
samsung CWE-20
7.8
2021-07-08 CVE-2021-25442 Improper Authentication vulnerability in Samsung Knox Cloud Services
Improper MDM policy management vulnerability in KME module prior to KCS version 1.39 allows MDM users to bypass Knox Manage authentication.
network
low complexity
samsung CWE-287
7.5
2021-06-11 CVE-2021-25398 Unspecified vulnerability in Samsung Bixby Voice 3.0.52.14
Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts.
local
low complexity
samsung
3.3
2021-06-11 CVE-2021-25399 Unspecified vulnerability in Samsung Smart Manager
Improper configuration in Smart Manager prior to version 11.0.05.0 allows attacker to access the file with system privilege.
local
low complexity
samsung
7.1
2021-06-11 CVE-2021-25400 Unspecified vulnerability in Samsung Internet 13.2.1.46/13.2.1.70
Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.
local
low complexity
samsung
7.8
2021-06-11 CVE-2021-25401 Unspecified vulnerability in Samsung Health
Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action.
local
low complexity
samsung
7.8
2021-06-11 CVE-2021-25402 Insecure Storage of Sensitive Information vulnerability in Samsung Notes 2.0.02.31/4.2.00.22
Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information.
local
low complexity
samsung CWE-922
3.3
2021-06-11 CVE-2021-25403 Unspecified vulnerability in Samsung Account 10.7.07/12.2.0.9
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.
local
low complexity
samsung
3.3
2021-06-11 CVE-2021-25404 Insecure Storage of Sensitive Information vulnerability in Samsung Smartthings Firmware
Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log.
local
low complexity
samsung CWE-922
3.3