Vulnerabilities > Samsung > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-42555 Unspecified vulnerability in Samsung Easysetup
Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30731 Unspecified vulnerability in Samsung Android 12.0/13.0
Logic error in package installation via debugger command prior to SMR Oct-2023 Release 1 allows physical attacker to install an application that has different build type.
low complexity
samsung
4.6
2023-10-04 CVE-2023-30734 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-10-04 CVE-2023-30736 Unspecified vulnerability in Samsung Assistant
Improper authorization in PushMsgReceiver of Samsung Assistant prior to version 8.7.00.1 allows attacker to execute javascript interface.
network
low complexity
samsung
5.4
2023-10-04 CVE-2023-30737 Unspecified vulnerability in Samsung Health
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
local
low complexity
samsung
5.5
2023-09-28 CVE-2023-41911 Double Free vulnerability in Samsung Exynos 2200 Firmware
Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).
local
low complexity
samsung CWE-415
5.5
2023-09-08 CVE-2023-37367 Incorrect Authorization vulnerability in Samsung products
An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123.
network
low complexity
samsung CWE-863
5.3
2023-09-06 CVE-2023-30706 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper authorization in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows attacker to read arbitrary file with system privilege.
network
low complexity
samsung
4.9
2023-09-06 CVE-2023-30709 Unspecified vulnerability in Samsung Android 11.0/12.0
Improper access control in Dual Messenger prior to SMR Sep-2023 Release 1 allows local attackers launch activity with system privilege.
local
low complexity
samsung
6.7
2023-09-06 CVE-2023-30713 Improper Privilege Management vulnerability in Samsung Android 11.0/12.0
Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change some settings of the folder lock.
local
low complexity
samsung CWE-269
5.5