Samsung
1,215 known vulnerabilities
Top Products
Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger privileged
Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authentication.
Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attackers to p
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attackers to c
Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows remote at
URL redirection in Samsung Account prior to version 15.5.01.1 allows local attackers to potentially get access token.
Improper export of android application components in Samsung Assistant prior to version 9.3.10.7 allows local attacker t
Improper authorization in Settings prior to SMR Mar-2026 Release 1 allows local attacker to disable configuring the back
Improper privilege management in ThemeManager prior to SMR Mar-2026 Release 1 allows local privileged attackers to reuse
Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local attacker
Improper verification of cryptographic signature in Font Settings prior to SMR Mar-2026 Release 1 allows physical attack
Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local attacker
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. A NULL pointer
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2500. Unvalidated VS4
An issue was discovered in LBS in Samsung Mobile Processor Exynos 2200. There was no check for memory initialization wit
An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580, and 2500. A NULL pointer dereference
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL pointer dereference
Path traversal in Samsung Members prior to Chinese version 15.5.05.4 allows local attackers to overwrite data within Sam
Improper input validation in Samsung Members prior to version 5.6.00.11 allows remote attackers to connect arbitrary URL
Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attacke
Path traversal in ShortcutService prior to SMR Feb-2026 Release 1 allows privileged local attacker to create file with s
Improper input validation in FacAtFunction prior to SMR Feb-2026 Release 1 allows privileged physical attacker to execut
Improper input validation in PACM prior to SMR Feb-2026 Release 1 allows physical attacker to execute arbitrary commands
Improper privilege management in Settings prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrary act
Improper authorization in KnoxGuardManager prior to SMR Feb-2026 Release 1 allows local attackers to bypass the persiste
Improper access control in Emergency Sharing prior to SMR Feb-2026 Release 1 allows local attackers to interrupt its fun
An issue was discovered in Samsung Mobile Processor, Wearable Processor and Modem Exynos 980, 990, 850, 1080, 9110, W920
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12
The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo
An unauthenticated user can upload arbitrary files to execute remote code, leading to privilege escalation in MagicInfo9
A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Sto
Improper input validation in Galaxy Store prior to version 4.6.02 allows local attacker to execute arbitrary script.
Improper handling of insufficient permission in Samsung Cloud prior to version 5.6.11 allows local attackers to access s
Improper input validation in data related to network restrictions prior to SMR Jan-2026 Release 1 allows physical attack
Out-of-bounds read in libimagecodec.quram.so prior to SMR Jan-2026 Release 1 allows remote attacker to access out-of-bou
Improper Export of Android Application Components in UwbTest prior to SMR Jan-2026 Release 1 allows local attackers to e
Use After Free in PROCA driver prior to SMR Jan-2026 Release 1 allows local attackers to potentially execute arbitrary c
Improper access control in SLocation prior to SMR Jan-2026 Release 1 allows local attackers to execute the privileged AP
Improper input validation in SecSettings prior to SMR Jan-2026 Release 1 allows local attacker to access file with syste
Use after free in DualDAR prior to SMR Jan-2026 Release 1 allows local privileged attackers to execute arbitrary code.
An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580. Incorrect Handling of the NL80211
An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400,
Frequently Asked Questions
How many CVEs affect Samsung?
Samsung has 1,215 CVE records in our database, including 205 critical and 457 high severity vulnerabilities.
What are the most severe Samsung vulnerabilities?
Samsung has 205 critical severity (CVSS 9.0+) and 457 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Samsung vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Samsung products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Samsung Vulnerabilities
CyberStrike scans your infrastructure for Samsung vulnerabilities and provides real-time remediation guidance.
Get Started