Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2017-01-27 CVE-2016-1919 Information Exposure vulnerability in Samsung Knox
Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitive information by leveraging knowledge of the TIMA key and a brute-force attack.
1.9
2015-07-06 CVE-2015-4033 Information Exposure vulnerability in Samsung S-Beam
Samsung SBeam allows remote attackers to read arbitrary images by leveraging an NFC connection to access the HTTP server on port 15000.
low complexity
samsung CWE-200
3.3
2015-06-19 CVE-2015-4640 7PK - Security Features vulnerability in Swiftkey SDK
The SwiftKey language-pack update implementation on Samsung Galaxy S4, S4 Mini, S5, and S6 devices relies on an HTTP connection to the skslm.swiftkey.net server, which allows man-in-the-middle attackers to write to language-pack files by modifying an HTTP response.
2.9
2012-12-31 CVE-2012-6334 Permissions, Privileges, and Access Controls vulnerability in Samsung Samsungdive
The Track My Mobile feature in the SamsungDive subsystem for Android on Samsung Galaxy devices does not properly implement Location APIs, which allows physically proximate attackers to provide arbitrary location data via a "commonly available simple GPS location spoofer."
2.9
2012-12-31 CVE-2012-6337 Information Exposure vulnerability in Samsung Samsungdive
The Track My Mobile feature in the SamsungDive subsystem for Android on Samsung Galaxy devices shows the activation of remote tracking, which might allow physically proximate attackers to defeat a product-recovery effort by tampering with this feature or its location data.
low complexity
samsung CWE-200
3.3