Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2023-03-16 CVE-2023-21462 Unspecified vulnerability in Samsung Quick Share 3.5.14.18
The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13 allows to local attacker to access MAC address without related permission.
local
low complexity
samsung
3.3
2023-03-16 CVE-2023-21458 Improper Privilege Management vulnerability in Samsung Android 11.0/12.0/13.0
Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected intent.
local
low complexity
samsung CWE-269
3.3
2023-03-16 CVE-2023-21454 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text history on the lockscreen.
low complexity
samsung
2.4
2023-03-16 CVE-2023-21452 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper usage of implicit intent in Bluetooth prior to SMR Mar-2023 Release 1 allows attacker to get MAC address of connected device.
local
low complexity
samsung
3.3
2023-02-09 CVE-2023-21450 Missing Authorization vulnerability in Samsung ONE Hand Operation +
Missing Authorization vulnerability in One Hand Operation + prior to version 6.1.21 allows multi-users to access owner's widget without authorization via gesture setting.
low complexity
samsung CWE-862
2.1
2023-02-09 CVE-2023-21448 Path Traversal vulnerability in Samsung Cloud 4.7.0.3/5.1.0.8/5.2.00.7
Path traversal vulnerability in Samsung Cloud prior to version 5.3.0.32 allows attacker to access specific png file.
local
low complexity
samsung CWE-22
3.3
2023-02-09 CVE-2023-21447 Exposure of Resource to Wrong Sphere vulnerability in Samsung Cloud 4.7.0.3/5.1.0.8/5.2.00.7
Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access information with Samsung Cloud's privilege via implicit intent.
local
low complexity
samsung CWE-668
3.3
2023-02-09 CVE-2023-21438 Exposure of Resource to Wrong Sphere vulnerability in Samsung Android 11.0/12.0
Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by Secure Folder.
low complexity
samsung CWE-668
2.4
2023-02-09 CVE-2023-21436 Unspecified vulnerability in Samsung Android 10.0/11.0
Improper usage of implicit intent in Contacts prior to SMR Feb-2023 Release 1 allows attacker to get account ID.
local
low complexity
samsung
3.3
2023-02-09 CVE-2023-21431 Improper Input Validation vulnerability in Samsung Bixby Vision 3.7.50.6
Improper input validation in Bixby Vision prior to version 3.7.70.17 allows attacker to access data of Bixby Vision.
local
low complexity
samsung CWE-20
3.3