Show filters
80 Total Results
Displaying 1-10 of 80
Sort by:
Attacker Value
Unknown

CVE-2025-20895

Disclosure Date: February 04, 2025 (last updated February 04, 2025)
Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard.
0
Attacker Value
Unknown

CVE-2024-49409

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-49408

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-32670

Disclosure Date: July 10, 2024 (last updated July 10, 2024)
Exposure of Sensitive Information to an Unauthorized Actor in Samsung Galaxy SmartTag2 prior to 0.20.04 allows attackes to potentially identify the tag's location by scanning the BLE adversting.
0
Attacker Value
Unknown

CVE-2024-34601

Disclosure Date: July 02, 2024 (last updated January 07, 2025)
Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launch unexported activities of GalaxyStore.
Attacker Value
Unknown

CVE-2024-20870

Disclosure Date: May 07, 2024 (last updated May 07, 2024)
Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows local attackers to write arbitrary files with the privilege of Galaxy Store.
0
Attacker Value
Unknown

CVE-2024-20825

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
Attacker Value
Unknown

CVE-2024-20824

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
Attacker Value
Unknown

CVE-2024-20823

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.
Attacker Value
Unknown

CVE-2024-20822

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent.