Samsung
4,624 known vulnerabilities
Top Products
Improper caller verification vulnerability in SemClipboard prior to SMR June-2024 Release 1 allows local attackers to ac
Improper access control vulnerability in SmartManagerCN prior to SMR Jun-2024 Release 1 allows local attackers to launch
Improper input validation vulnerability in caminfo driver prior to SMR Jun-2024 Release 1 allows local privileged attack
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and exec
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, a
Improper handling of insufficient privileges vulnerability in TalkbackSE prior to version Android 14 allows local attack
Improper authorization vulnerability in Samsung Keyboard prior to version One UI 5.1.1 allows physical attackers to part
Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows loc
Improper privilege management vulnerability in Samsung Internet prior to version 25.0.0.41 allows local attackers to byp
Improper input validation in Samsung Notes prior to version 4.4.15 allows local attackers to delete files with Samsung N
Improper privilege management vulnerability in Samsung Email prior to version 6.1.91.14 allows local attackers to access
Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip act
Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images.
Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to mon
Out of bounds write vulnerability in SNAP in HAL prior to SMR May-2024 Release 1 allows local privileged attackers to ex
Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary
Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause me
Improper export of android application components vulnerability in TelephonyUI prior to SMR May-2024 Release 1 allows lo
Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pi
Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1
Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows loc
Improper Authentication vulnerability in Secure Folder prior to SMR May-2024 Release 1 allows physical attackers to acce
Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attacker
Improper handling of insufficient privileges vulnerability in Samsung Camera prior to versions 12.1.0.31 in Android 12,
Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attacke
Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows loc
Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch a
Use of Implicit Intent for Sensitive Communication in Samsung Pay prior to version 5.4.99 allows local attackers to acce
Out-of-bound Write vulnerability in chunk parsing implementation of libsdffextractor prior to SMR Apr-2023 Release 1 all
Improper Input Validation vulnerability in text parsing implementation of libsdffextractor prior to SMR Apr-2024 Release
Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to
Out-of-bounds write vulnerability while decoding hcr of libsavsac.so prior to SMR Apr-2024 Release 1 allows local attack
Out-of-bounds write vulnerability while releasing memory in libsavsac.so prior to SMR Apr-2024 Release 1 allows local at
Out-of-bounds write vulnerability while parsing remaining codewords in libsavsac.so prior to SMR Apr-2024 Release 1 allo
Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows l
Improper Input Validation vulnerability in handling apdu of libsec-ril prior to SMR Apr-2024 Release 1 allows local priv
Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local a
Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to acc
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02
Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitr
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allow
Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024 Release 1 allows local att
Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local atta
The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to a
Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execut
Stack overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execu
Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock sett
Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers t
Improper input validation in IpcTxSndSetLoopbackCtrl in libsec-ril prior to SMR Sep-2023 Release 1 allows local attacker
Frequently Asked Questions
How many CVEs affect Samsung?
Samsung has 4,624 CVE records in our database, including 376 critical and 1561 high severity vulnerabilities. 15 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Samsung vulnerabilities?
Samsung has 376 critical severity (CVSS 9.0+) and 1561 high severity (CVSS 7.0-8.9) vulnerabilities. 15 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Samsung vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Samsung products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Samsung Vulnerabilities
CyberStrike scans your infrastructure for Samsung vulnerabilities and provides real-time remediation guidance.
Get Started