Skip to main content

Vendor/product archive

samsung / account CVEs

Beta · best-effort

28 CVEs tagged to samsung / account0 Critical, 0 High, 24 Medium, 4 Low, 0 Unrated.

CVE-2026-20994

Published Mar 16, 2026

URL redirection in Samsung Account prior to version 15.5.01.1 allows local attackers to potentially get access token.

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-58487

Published Dec 2, 2025

Improper authorization in Samsung Account prior to version 15.5.01.1 allows local attacker to launch arbitrary activity with Samsung Account privilege.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-58486

Published Dec 2, 2025

Improper input validation in Samsung Account prior to version 15.5.01.1 allows local attacker to execute arbitrary script.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21076

Published Nov 5, 2025

Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account. User interacti…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-21481

Published Sep 3, 2025

Improper URL input validation vulnerability in Samsung Account application prior to version 14.1.0.0 allows remote attackers to get sensitive information.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-20841

Published Mar 5, 2024

Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42551

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with S…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42550

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary file with Samsun…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42549

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42548

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42547

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitrary…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42546

Published Nov 7, 2023

Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account prior to version 14.5.00.7 allows attackers to access arbitra…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42540

Published Nov 7, 2023

Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive information via implicit intent.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-39875

Published Oct 7, 2022

Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-39874

Published Oct 7, 2022

Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-39863

Published Oct 7, 2022

Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content providers without permission.

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-30743

Published Jun 7, 2022

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without permission.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30739

Published Jun 7, 2022

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get an user email or phone number with a normal level permission.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30737

Published Jun 7, 2022

Implicit Intent hijacking vulnerability in Samsung Account prior to version 13.2.00.6 allows attackers to get email ID.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30736

Published Jun 7, 2022

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and gallery without permission.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30735

Published Jun 7, 2022

Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without permission.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30734

Published Jun 7, 2022

Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number without permission.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30733

Published Jun 7, 2022

Sensitive information exposure in Sign-in log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email or phone number without permission.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30732

Published Jun 7, 2022

Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive information via onActivityResult.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-25403

Published Jun 11, 2021

Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access cont…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort
Showing 1-25 of 28 CVEsPage 1 of 2