Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2022-25823 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch Plugin 2.2.05.21033151/2.2.05.22012751
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.220126741 allows attackers to access user information in log.
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-24930 Unspecified vulnerability in Samsung Wear OS 3.0
An Improper access control vulnerability in StRetailModeReceiver in Wear OS 3.0 prior to Firmware update MAR-2022 Release allows untrusted applications to reset default app settings without a proper permission
local
low complexity
samsung
3.3
2022-02-11 CVE-2022-24923 Unspecified vulnerability in Samsung Searchwidget
Improper access control vulnerability in Samsung SearchWidget prior to versions 2.3.00.6 in China models allows untrusted applications to load arbitrary URL and local files in webview.
local
low complexity
samsung
3.3
2022-02-11 CVE-2022-23997 Unspecified vulnerability in Samsung Wear OS
Unprotected component vulnerability in StTheaterModeDurationAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to disable theater mode without a proper permission.
local
low complexity
samsung
3.3
2022-02-11 CVE-2022-23996 Incorrect Default Permissions vulnerability in Samsung Wear OS
Unprotected component vulnerability in StTheaterModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to enable bedtime mode without a proper permission.
local
low complexity
samsung CWE-276
3.3
2022-02-11 CVE-2022-23995 Incorrect Default Permissions vulnerability in Samsung Wear OS
Unprotected component vulnerability in StBedtimeModeAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
local
low complexity
samsung CWE-276
3.3
2022-02-11 CVE-2022-23994 Unspecified vulnerability in Samsung Wear OS
An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission.
local
low complexity
samsung
3.3
2022-02-11 CVE-2022-23434 Unspecified vulnerability in Samsung Bixby 3.7.50.6
A vulnerability using PendingIntent in Bixby Vision prior to versions 3.7.60.8 in Android S(12), 3.7.50.6 in Andorid R(11) and below allows attackers to execute privileged action by hijacking and modifying the intent.
local
low complexity
samsung
3.3
2022-01-10 CVE-2022-22283 Insufficient Session Expiration vulnerability in Samsung Health 6.16/6.17/6.19.1.0001
Improper session management vulnerability in Samsung Health prior to 6.20.1.005 prevents logging out from Samsung Health App.
local
low complexity
samsung CWE-613
3.3
2021-12-08 CVE-2021-25527 Unspecified vulnerability in Samsung PAY
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
local
low complexity
samsung
3.3