Vulnerabilities > Samsung > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-08-08 CVE-2023-36482 Classic Buffer Overflow vulnerability in Samsung products
An issue was discovered in Samsung NFC S3NRN4V, S3NSN4V, S3NSEN4, SEN82AB, and S3NRN82.
low complexity
samsung CWE-120
4.3
2023-07-20 CVE-2023-38523 Missing Authentication for Critical Function vulnerability in Samsung products
The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, without authentication, exposing sensitive information such as the command history and screenshot of the file being processed.
network
low complexity
samsung CWE-306
5.3
2023-07-06 CVE-2023-30641 Unspecified vulnerability in Samsung Android 13.0
Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restricted user profile to access device owner's google account data.
low complexity
samsung
4.3
2023-07-06 CVE-2023-30642 Improper Privilege Management vulnerability in Samsung Android 12.0/13.0
Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to call privilege function.
local
low complexity
samsung CWE-269
5.5
2023-07-06 CVE-2023-30648 Out-of-bounds Write vulnerability in Samsung Android 11.0/12.0/13.0
Stack out-of-bounds write vulnerability in IpcRxImeiUpdateImeiNoti of RILD priro to SMR Jul-2023 Release 1 cause a denial of service on the system.
local
low complexity
samsung CWE-787
5.5
2023-07-06 CVE-2023-30660 Unspecified vulnerability in Samsung Android 12.0/13.0
Exposure of Sensitive Information vulnerability in getDefaultChipId in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.
local
low complexity
samsung
5.5
2023-07-06 CVE-2023-30661 Unspecified vulnerability in Samsung Android 12.0/13.0
Exposure of Sensitive Information vulnerability in getChipInfos in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.
local
low complexity
samsung
5.5
2023-07-06 CVE-2023-30662 Unspecified vulnerability in Samsung Android 12.0/13.0
Exposure of Sensitive Information vulnerability in getChipIds in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.
local
low complexity
samsung
5.5
2023-07-06 CVE-2023-30665 Out-of-bounds Read vulnerability in Samsung Android 11.0/12.0/13.0
Improper input validation vulnerability in OnOemServiceMode in libsec-ril prior to SMR Jul-2023 Release 1 allows local attackers to cause an Out-Of-Bounds read.
local
low complexity
samsung CWE-125
4.4
2023-07-06 CVE-2023-30671 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via adb command prior to SMR Jul-2023 Release 1 allows local attackers to downgrade installed application.
local
low complexity
samsung
5.5