Vulnerabilities > Samsung > Low

DATE CVE VULNERABILITY TITLE RISK
2022-11-09 CVE-2022-39893 Information Exposure Through Log Files vulnerability in Samsung Galaxy Buds PRO Manage
Sensitive information exposure vulnerability in FmmBaseModel in Galaxy Buds Pro Manage prior to version 4.1.22092751 allows local attackers with log access permission to get device identifier data through device log.
local
low complexity
samsung CWE-532
3.3
2022-11-09 CVE-2022-39889 Unspecified vulnerability in Samsung Galaxywatch4Plugin 2.2.11.22102751
Improper access control vulnerability in GalaxyWatch4Plugin prior to versions 2.2.11.22101351 and 2.2.12.22101351 allows attackers to access wearable device information.
local
low complexity
samsung
3.3
2022-10-07 CVE-2022-39876 Information Exposure Through Log Files vulnerability in Samsung Reminder
Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to access device IMEI.
local
low complexity
samsung CWE-532
3.3
2022-10-07 CVE-2022-39872 Improper Handling of Exceptional Conditions vulnerability in Samsung Sharelive
Improper restriction of broadcasting Intent in ShareLive prior to version 13.2.03.5 leaks MAC address of the connected Bluetooth device.
local
low complexity
samsung CWE-755
3.3
2022-10-07 CVE-2022-39861 Missing Authorization vulnerability in Samsung Factorycamera 2.1.96
Unprotected Receiver in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to record video without camera privilege.
local
low complexity
samsung CWE-862
3.3
2022-10-07 CVE-2022-39860 Unspecified vulnerability in Samsung Quick Share 13.1.2.4/3.5.14.18/3.5.16.20
Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to access sensitive information via implicit broadcast.
low complexity
samsung
3.5
2022-10-07 CVE-2022-39859 Unspecified vulnerability in Samsung Uphelper Library
Implicit intent hijacking vulnerability in UPHelper library prior to version 3.0.12 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
3.3
2022-09-09 CVE-2022-36878 Information Exposure vulnerability in Samsung Find MY Mobile
Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via log.
local
low complexity
samsung CWE-200
3.3
2022-09-09 CVE-2022-36877 Information Exposure Through Log Files vulnerability in Samsung Members
Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local attackers to access device identification via log.
local
low complexity
samsung CWE-532
3.3
2022-09-09 CVE-2022-36876 Unspecified vulnerability in Samsung Pass 3.0.02.4/3.7.07.5/4.0.03.1
Improper authorization in UPI payment in Samsung Pass prior to version 4.0.04.10 allows physical attackers to access account list without authentication.
low complexity
samsung
2.4