Vulnerabilities
Vulnerable Software
Samsung:  Security Vulnerabilities
Improper input validation in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows local attackers to access data within Samsung Gallery.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-05-07
Improper input validation in Samsung Flow prior to version 4.9.17.6 allows local attackers to access data within Samsung Flow.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-05-07
Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flow configuration.
CVSS Score
6.2
EPSS Score
0.001
Published
2025-05-07
Improper handling of insufficient permission in CocktailBarService prior to SMR May-2025 Release 1 allows local attackers to use the privileged api.
CVSS Score
4.0
EPSS Score
0.001
Published
2025-05-07
Improper handling of insufficient permission or privileges in sepunion service prior to SMR May-2025 Release 1 allows local privileged attackers to access files with system privilege.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-05-07
Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attackers to track the S Pen position.
CVSS Score
4.0
EPSS Score
0.001
Published
2025-05-07
Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVSS Score
6.6
EPSS Score
0.001
Published
2025-05-07
Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVSS Score
6.6
EPSS Score
0.001
Published
2025-05-07
Improper handling of insufficient permission in Bixby wakeup prior to version 2.3.74.8 allows local attackers to access sensitive data.
CVSS Score
6.2
EPSS Score
0.001
Published
2025-05-07
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.
CVSS Score
4.6
EPSS Score
0.002
Published
2025-05-07


Contact Us

Shodan ® - All rights reserved