Skip to main content

Vendor archive

samsung CVEs

Beta · best-effort

1,628 CVEs tagged to vendor samsung113 Critical, 438 High, 965 Medium, 112 Low, 0 Unrated.

CVE-2023-21480

Published Sep 3, 2025

Improper input validation vulnerability in CertByte prior to SMR Apr-2023 Release 1 allows local attackers to launch privileged activities.

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-21479

Published Sep 3, 2025

Improper authorization in Smart suggestions prior to SMR Apr-2023 Release 1 in Android 13 and 4.1.01.0 in Android 12 allows remote attackers to register a schedule.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21478

Published Sep 3, 2025

Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21477

Published Sep 3, 2025

Access of Memory Location After End of Buffer vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort

CVE-2023-21476

Published Sep 3, 2025

Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code.

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-21475

Published Sep 3, 2025

Out-of-bounds Write vulnerability in libaudiosaplus_sec.so library prior to SMR Apr-2023 Release 1 allows local attacker to execute arbitrary code.

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-21474

Published Sep 3, 2025

Intent redirection vulnerability in SecSettings prior to SMR Apr-2022 Release 1 allows attackers to access arbitrary file with system privilege.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21473

Published Sep 3, 2025

Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21472

Published Sep 3, 2025

Improper input validation with Exynos Fastboot USB Interface prior to SMR Apr-2023 Release 1 allows a physical attacker to execute arbitrary code in bootloader.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21471

Published Sep 3, 2025

Improper access control vulnerability in SemClipboard prior to SMR Apr-2023 Release 1 allows attackers to read arbitrary files with system permission.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21470

Published Sep 3, 2025

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.NETWORK…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21469

Published Sep 3, 2025

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.GEOFENC…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21468

Published Sep 3, 2025

Improper access control vulnerability in Telephony prior to SMR Apr-2023 Release 1 allows attackers to access files with escalated permission.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21467

Published Sep 3, 2025

Error in 3GPP specification implementation in Exynos baseband prior to SMR Apr-2023 Release 1 allows incorrect handling of unencrypted message.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-21466

Published Sep 3, 2025

PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-32098

Published Sep 2, 2025

An issue was discovered in Samsung Magician 6.3 through 8.3 on Windows. An attacker can achieve Elevation of Privileges to SYSTEM by exploiting insecure file delete operations dur…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21022

Published Aug 6, 2025

Improper access control in Galaxy Wearable prior to version 2.2.63.25042861 allows local attackers to access sensitive information.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-21021

Published Aug 6, 2025

Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21020

Published Aug 6, 2025

Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21019

Published Aug 6, 2025

Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this vuln…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21018

Published Aug 6, 2025

Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bounds memory.

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21017

Published Aug 6, 2025

Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21015

Published Aug 6, 2025

Path Traversal in Document scanner prior to SMR Aug-2025 Release 1 allows local attackers to delete file with Document scanner's privilege.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21014

Published Aug 6, 2025

Improper export of android application component in Emergency SoS prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 226-250 of 1,628 CVEsPage 10 of 66