Vulnerabilities > Samsung

DATE CVE VULNERABILITY TITLE RISK
2021-12-08 CVE-2021-25522 Insecure Storage of Sensitive Information vulnerability in Samsung Smart Capture
Insecure storage of sensitive information vulnerability in Smart Capture prior to version 4.8.02.10 allows attacker to access victim's captured images without permission.
local
low complexity
samsung CWE-922
3.3
2021-12-08 CVE-2021-25523 Insecure Storage of Sensitive Information vulnerability in Samsung Dialer
Insecure storage of device information in Samsung Dialer prior to version 12.7.05.24 allows attacker to get Samsung Account ID.
local
low complexity
samsung CWE-922
3.3
2021-12-08 CVE-2021-25524 Insecure Storage of Sensitive Information vulnerability in Samsung Contacts
Insecure storage of device information in Contacts prior to version 12.7.05.24 allows attacker to get Samsung Account ID.
local
low complexity
samsung CWE-922
3.3
2021-12-08 CVE-2021-25525 Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung PAY
Improper check or handling of exception conditions vulnerability in Samsung Pay (US only) prior to version 4.0.65 allows attacker to use NFC without user recognition.
low complexity
samsung CWE-754
6.5
2021-12-08 CVE-2021-25526 Unspecified vulnerability in Samsung Blockchain Wallet
Intent redirection vulnerability in Samsung Blockchain Wallet prior to version 1.3.02.8 allows attacker to execute privileged action.
local
low complexity
samsung
5.5
2021-12-08 CVE-2021-25527 Unspecified vulnerability in Samsung PAY
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
local
low complexity
samsung
3.3
2021-11-16 CVE-2021-42114 Modern DRAM devices (PC-DDR4, LPDDR4X) are affected by a vulnerability in their internal Target Row Refresh (TRR) mitigation against Rowhammer attacks.
high complexity
samsung micron skhynix
8.3
2021-11-05 CVE-2021-25504 Unspecified vulnerability in Samsung Group Sharing
Intent redirection vulnerability in Group Sharing prior to 10.8.03.2 allows attacker to access contact information.
local
low complexity
samsung
4.0
2021-11-05 CVE-2021-25505 Improper Authentication vulnerability in Samsung Pass
Improper authentication in Samsung Pass prior to 3.0.02.4 allows to use app without authentication when lockscreen is unlocked.
local
low complexity
samsung CWE-287
7.8
2021-11-05 CVE-2021-25506 Incorrect Authorization vulnerability in Samsung Health
Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service.
local
low complexity
samsung CWE-863
5.5