Vulnerabilities
Vulnerable Software
Samsung:  Security Vulnerabilities
Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions registered by the user.
CVSS Score
5.8
EPSS Score
0.003
Published
2021-04-09
Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-04-09
CVE-2021-25369
Known exploited
An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
CVSS Score
6.2
EPSS Score
0.002
Published
2021-03-26
CVE-2021-25370
Known exploited
An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic.
CVSS Score
6.1
EPSS Score
0.009
Published
2021-03-26
CVE-2021-25371
Known exploited
A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
CVSS Score
6.1
EPSS Score
0.025
Published
2021-03-26
CVE-2021-25372
Known exploited
An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
CVSS Score
6.1
EPSS Score
0.019
Published
2021-03-26
Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without permission.
CVSS Score
3.7
EPSS Score
0.002
Published
2021-03-25
Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is executed.
CVSS Score
3.3
EPSS Score
0.001
Published
2021-03-25
Using unsafe PendingIntent in Slow Motion Editor prior to version 3.5.18.5 allows local attackers unauthorized action without permission via hijacking the PendingIntent.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-03-25
Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically proximate attackers to access user information via log.
CVSS Score
2.0
EPSS Score
0.0
Published
2021-03-25


Contact Us

Shodan ® - All rights reserved