Vulnerabilities
Vulnerable Software
Samsung:  Security Vulnerabilities
Path traversal vulnerability in FileUriConverter of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.
CVSS Score
4.0
EPSS Score
0.002
Published
2024-01-04
Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.
CVSS Score
3.3
EPSS Score
0.002
Published
2024-01-04
Improper access control in Notification service prior to SMR Jan-2024 Release 1 allows local attacker to access notification data.
CVSS Score
6.2
EPSS Score
0.001
Published
2024-01-04
Implicit intent hijacking vulnerability in Samsung Email prior to version 6.1.90.16 allows local attacker to get sensitive information.
CVSS Score
3.3
EPSS Score
0.002
Published
2024-01-04
Samsung Mobile Processor and Wearable Processor (Exynos 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, and W920) allow Information Disclosure in the Bootloader.
CVSS Score
4.8
EPSS Score
0.003
Published
2023-12-13
A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200, 1280, and 1380 allows unintended modifications of values within certain areas.
CVSS Score
4.0
EPSS Score
0.001
Published
2023-12-13
A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, and Exynos 1380 can cause unexpected termination of a system.
CVSS Score
6.3
EPSS Score
0.001
Published
2023-12-13
Improper input validation vulnerability in Samsung Open Source Escargot allows stack overflow and segmentation fault. This issue affects Escargot: from 3.0.0 through 4.0.0.
CVSS Score
5.3
EPSS Score
0.007
Published
2023-12-06
Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK from Galaxy Store.
CVSS Score
7.5
EPSS Score
0.01
Published
2023-12-05
Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data.
CVSS Score
7.5
EPSS Score
0.012
Published
2023-12-05


Contact Us

Shodan ® - All rights reserved