Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2022-05-03 CVE-2022-28790 Improper Authentication vulnerability in Samsung Link to Windows Service
Improper authentication in Link to Windows Service prior to version 2.3.04.1 allows attacker to lock the device.
local
low complexity
samsung CWE-287
3.3
2022-04-11 CVE-2022-28778 Unspecified vulnerability in Samsung Security Supporter
Improper access control vulnerability in Samsung Security Supporter prior to version 1.2.40.0 allows attacker to set the arbitrary folder as Secret Folder without Samsung Security Supporter permission
local
low complexity
samsung
3.3
2022-04-11 CVE-2022-28777 Unspecified vulnerability in Samsung Members
Improper access control vulnerability in Samsung Members prior to version 13.6.08.5 allows local attacker to execute call function without CALL_PHONE permission.
local
low complexity
samsung
3.3
2022-04-11 CVE-2022-28775 Unspecified vulnerability in Samsung Flow 4.8.03.5/4.8.5.0
Improper access control vulnerability in Samsung Flow prior to version 4.8.06.5 allows attacker to write the file without Samsung Flow permission.
local
low complexity
samsung
3.3
2022-03-10 CVE-2022-25830 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch 3 Plugin
Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25829 Information Exposure Through Log Files vulnerability in Samsung Watch Active2 Plugin 2.2.08.21033151
Information Exposure vulnerability in Watch Active2 Plugin prior to version 2.2.08.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25828 Information Exposure Through Log Files vulnerability in Samsung Watch Active Plugin 2.2.07.21033151
Information Exposure vulnerability in Watch Active Plugin prior to version 2.2.07.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25827 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch Plugin 2.2.05.21033151
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25826 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch 3 Plugin
Information Exposure vulnerability in Galaxy S3 Plugin prior to version 2.2.03.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25824 Unspecified vulnerability in Samsung Bixby Touch
Improper access control vulnerability in BixbyTouch prior to version 2.2.00.6 in China models allows untrusted applications to load arbitrary URL and local files in webview.
local
low complexity
samsung
3.3