Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-34632 Out-of-bounds Read vulnerability in Samsung Notes 2.0.02.31/4.2.00.22/4.3.02.61
Out-of-bounds read in uuid parsing in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory.
local
low complexity
samsung CWE-125
3.3
2024-08-07 CVE-2024-34618 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.
local
low complexity
samsung
3.3
2024-08-07 CVE-2024-34617 Incorrect Default Permissions vulnerability in Samsung Android 14.0
Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.
local
low complexity
samsung CWE-276
3.3
2024-07-09 CVE-2024-28067 Unspecified vulnerability in Samsung Exynos Modem 5300 Firmware
A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode of packets going to the victim, enabling the attacker to send messages to the victim in plaintext.
network
high complexity
samsung
3.7
2024-07-02 CVE-2024-34600 Unspecified vulnerability in Samsung Flow
Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copy image files to external storage.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34599 Unspecified vulnerability in Samsung Tips
Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Tips' privilege.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34597 Unspecified vulnerability in Samsung Health
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34586 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34583 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifier.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-20900 Improper Authentication vulnerability in Samsung Android 12.0/13.0/14.0
Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.
local
low complexity
samsung CWE-287
3.3