Vulnerabilities > Samsung > Pass

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-42575 Incorrect Authorization vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.
low complexity
samsung CWE-863
6.8
2023-12-05 CVE-2023-42576 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.
low complexity
samsung CWE-287
6.8
2023-11-07 CVE-2023-42554 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.
low complexity
samsung CWE-287
6.8
2023-07-06 CVE-2023-30675 Improper Authentication vulnerability in Samsung Pass 4.0.05.1
Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed.
local
low complexity
samsung CWE-287
5.5
2023-07-06 CVE-2023-30676 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass.
low complexity
samsung
4.6
2023-07-06 CVE-2023-30677 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass on a certain state of an unlocked device.
low complexity
samsung
4.6
2022-12-08 CVE-2022-39910 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.0.06.7 allow physical attackers to access data of Samsung Pass on a certain state of an unlocked device using pop-up view.
high complexity
samsung
4.2
2022-12-08 CVE-2022-39911 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper check or handling of exceptional conditions vulnerability in Samsung Pass prior to version 4.0.06.1 allows attacker to access Samsung Pass.
low complexity
samsung
6.8
2022-11-09 CVE-2022-39892 Improper Authentication vulnerability in Samsung Pass
Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature.
network
low complexity
samsung CWE-287
critical
9.8