Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2023-02-09 CVE-2023-21429 Unspecified vulnerability in Samsung Android 10.0/11.0
Improper usage of implict intent in ePDG prior to SMR JAN-2023 Release 1 allows attacker to access SSID.
local
low complexity
samsung
3.3
2023-02-09 CVE-2023-21428 Improper Input Validation vulnerability in Samsung Android 11.0/12.0
Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Preferred Call.
local
low complexity
samsung CWE-20
3.3
2023-02-09 CVE-2023-21424 Incorrect Authorization vulnerability in Samsung Android 11.0/12.0
Improper Handling of Insufficient Permissions or Privileges vulnerability in SemChameleonHelper prior to SMR Jan-2023 Release 1 allows attacker to modify network related values, network code, carrier id and operator brand.
local
low complexity
samsung CWE-863
3.3
2022-11-09 CVE-2022-39893 Information Exposure Through Log Files vulnerability in Samsung Galaxy Buds PRO Manage
Sensitive information exposure vulnerability in FmmBaseModel in Galaxy Buds Pro Manage prior to version 4.1.22092751 allows local attackers with log access permission to get device identifier data through device log.
local
low complexity
samsung CWE-532
3.3
2022-11-09 CVE-2022-39889 Unspecified vulnerability in Samsung Galaxywatch4Plugin 2.2.11.22102751
Improper access control vulnerability in GalaxyWatch4Plugin prior to versions 2.2.11.22101351 and 2.2.12.22101351 allows attackers to access wearable device information.
local
low complexity
samsung
3.3
2022-10-07 CVE-2022-39876 Information Exposure Through Log Files vulnerability in Samsung Reminder
Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to access device IMEI.
local
low complexity
samsung CWE-532
3.3
2022-10-07 CVE-2022-39872 Improper Handling of Exceptional Conditions vulnerability in Samsung Sharelive
Improper restriction of broadcasting Intent in ShareLive prior to version 13.2.03.5 leaks MAC address of the connected Bluetooth device.
local
low complexity
samsung CWE-755
3.3
2022-10-07 CVE-2022-39861 Missing Authorization vulnerability in Samsung Factorycamera 2.1.96
Unprotected Receiver in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to record video without camera privilege.
local
low complexity
samsung CWE-862
3.3
2022-10-07 CVE-2022-39860 Unspecified vulnerability in Samsung Quick Share 13.1.2.4/3.5.14.18/3.5.16.20
Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to access sensitive information via implicit broadcast.
low complexity
samsung
3.5
2022-10-07 CVE-2022-39859 Unspecified vulnerability in Samsung Uphelper Library
Implicit intent hijacking vulnerability in UPHelper library prior to version 3.0.12 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
3.3