Skip to main content

Vendor/product archive

samsung / galaxy_watch_plugin CVEs

Beta · best-effort

6 CVEs tagged to samsung / galaxy_watch_plugin0 Critical, 0 High, 4 Medium, 2 Low, 0 Unrated.

CVE-2022-36875

Published Sep 9, 2022

Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission.

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-36874

Published Sep 9, 2022

Improper Handling of Insufficient Permissions or Privileges vulnerability in Waterplugin prior to 2.2.11.22040751 allows attacker to access device IMEI and Serial number.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-36873

Published Sep 9, 2022

Improper restriction of broadcasting Intent in GalaxyStoreBridgePageLinker of?Waterplugin prior to version 2.2.11.22081151 leaks MAC address of the connected Bluetooth device.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-25827

Published Mar 10, 2022

Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-25420

Published Jun 11, 2021

Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user sma…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1