Vulnerabilities > Samsung > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-42550 Unspecified vulnerability in Samsung Account
Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
network
low complexity
samsung
6.5
2023-11-07 CVE-2023-42551 Exposure of Resource to Wrong Sphere vulnerability in Samsung Account
Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsung Account privilege.
network
low complexity
samsung CWE-668
6.5
2023-11-07 CVE-2023-42553 Unspecified vulnerability in Samsung Email 6.1.82.0
Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4 allows attackers to read sandbox data of email.
network
low complexity
samsung
5.3
2023-11-07 CVE-2023-42554 Improper Authentication vulnerability in Samsung Pass 4.0.05.1/4.2.03.1
Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.
low complexity
samsung CWE-287
6.8
2023-11-07 CVE-2023-42555 Unspecified vulnerability in Samsung Easysetup
Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30731 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
low complexity
samsung
4.6
2023-10-04 CVE-2023-30734 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30736 Unspecified vulnerability in Samsung Assistant
Improper authorization in PushMsgReceiver of Samsung Assistant prior to version 8.7.00.1 allows attacker to execute javascript interface.
network
low complexity
samsung
5.4
2023-10-04 CVE-2023-30737 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-09-28 CVE-2023-41911 Double Free vulnerability in Samsung Exynos 2200 Firmware
Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).
local
low complexity
samsung CWE-415
5.5