Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36878 Information Exposure vulnerability in Samsung Find MY Mobile
Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via log.
local
low complexity
samsung CWE-200
3.3
2022-09-09 CVE-2022-36877 Information Exposure Through Log Files vulnerability in Samsung Members
Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local attackers to access device identification via log.
local
low complexity
samsung CWE-532
3.3
2022-09-09 CVE-2022-36876 Unspecified vulnerability in Samsung Pass 3.0.02.4/3.7.07.5/4.0.03.1
Improper authorization in UPI payment in Samsung Pass prior to version 4.0.04.10 allows physical attackers to access account list without authentication.
low complexity
samsung
2.4
2022-09-09 CVE-2022-36866 Unspecified vulnerability in Samsung Group Sharing 10.8.03.2
Improper access control vulnerability in Broadcaster in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to identify the device.
local
low complexity
samsung
3.3
2022-09-09 CVE-2022-36865 Unspecified vulnerability in Samsung Group Sharing 10.8.03.2
Improper access control in Group Sharing prior to versions 13.0.6.15 in Android S(12), 13.0.6.14 in Android R(11) and below allows attackers to access device information.
local
low complexity
samsung
3.3
2022-09-09 CVE-2022-36857 Improper Authorization vulnerability in Photo Editor prior to SMR Sep-2022 Release 1 allows physical attackers to read internal application data.
low complexity
google samsung
2.4
2022-08-05 CVE-2022-36835 Unspecified vulnerability in Samsung Internet Browser
Implicit Intent hijacking vulnerability in Samsung Internet Browser prior to version 17.0.7.34 allows attackers to access arbitrary files.
local
low complexity
samsung
3.3
2022-08-05 CVE-2022-36832 Unspecified vulnerability in Samsung Cameralyzer 3.2.0/3.3.0/3.4.0
Improper access control vulnerability in WebApp in Cameralyzer prior to versions 3.2.22, 3.3.22, 3.4.22 and 3.5.51 allows attackers to access external storage as Cameralyzer privilege.
local
low complexity
samsung
3.3
2022-08-05 CVE-2022-33733 Unspecified vulnerability in Samsung Charm
Sensitive information exposure in onCharacteristicRead in Charm by Samsung prior to version 1.2.3 allows attacker to get bluetooth connection information without permission.
local
low complexity
samsung
3.3
2022-07-12 CVE-2022-33706 Unspecified vulnerability in Samsung Gallery
Improper access control vulnerability in Samsung Gallery prior to version 13.1.05.8 allows physical attackers to access the pictures using S Pen air gesture.
low complexity
samsung
2.4