Vulnerabilities
Vulnerable Software
Samsung:  Security Vulnerabilities
Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service.
CVSS Score
4.0
EPSS Score
0.001
Published
2021-11-05
Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user device to access part of notification data in Secure Folder without authorization.
CVSS Score
5.7
EPSS Score
0.001
Published
2021-11-05
Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.
CVSS Score
5.3
EPSS Score
0.003
Published
2021-11-05
Improper input validation vulnerability in HDCP prior to SMR Nov-2021 Release 1 allows attackers to arbitrary code execution.
CVSS Score
5.0
EPSS Score
0.0
Published
2021-11-05
A missing input validation in HDCP LDFW prior to SMR Nov-2021 Release 1 allows attackers to overwrite TZASC allowing TEE compromise.
CVSS Score
7.2
EPSS Score
0.0
Published
2021-11-05
A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
CVSS Score
7.3
EPSS Score
0.001
Published
2021-10-06
A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
CVSS Score
7.3
EPSS Score
0.001
Published
2021-10-06
A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
CVSS Score
7.3
EPSS Score
0.001
Published
2021-10-06
Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows attacker to access content provider of Galaxy Store.
CVSS Score
7.1
EPSS Score
0.001
Published
2021-10-06
An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection mechanism in TEE.
CVSS Score
4.1
EPSS Score
0.0
Published
2021-10-06


Contact Us

Shodan ® - All rights reserved