Vulnerabilities > Samsung > Pass > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-11-06 CVE-2024-49405 Unspecified vulnerability in Samsung Pass 4.0.05.1/4.2.03.1/4.3.00.17
Improper authentication in Private Info in Samsung Pass in prior to version 4.4.04.7 allows physical attackers to access sensitive information in a specific scenario.
low complexity
samsung
4.6
2023-12-05 CVE-2023-42575 Incorrect Authorization vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting.
low complexity
samsung CWE-863
6.8
2023-12-05 CVE-2023-42576 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.
low complexity
samsung CWE-287
6.8
2023-11-07 CVE-2023-42554 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.
low complexity
samsung CWE-287
6.8
2023-07-06 CVE-2023-30675 Improper Authentication vulnerability in Samsung Pass 4.0.05.1
Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed.
local
low complexity
samsung CWE-287
5.5
2023-07-06 CVE-2023-30676 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass.
low complexity
samsung
4.6
2023-07-06 CVE-2023-30677 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass on a certain state of an unlocked device.
low complexity
samsung
4.6
2022-12-08 CVE-2022-39910 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper access control vulnerability in Samsung Pass prior to version 4.0.06.7 allow physical attackers to access data of Samsung Pass on a certain state of an unlocked device using pop-up view.
high complexity
samsung
4.2
2022-12-08 CVE-2022-39911 Unspecified vulnerability in Samsung Pass 4.0.05.1
Improper check or handling of exceptional conditions vulnerability in Samsung Pass prior to version 4.0.06.1 allows attacker to access Samsung Pass.
low complexity
samsung
6.8