Total
323 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-30708 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.6 MEDIUM |
Improper authentication in SecSettings prior to SMR Sep-2023 Release 1 allows attacker to access Captive Portal Wi-Fi in Reactivation Lock status. | |||||
CVE-2023-30707 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.0 MEDIUM |
Improper input validation vulnerability in FileProviderStatusReceiver in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows local attackers to delete arbitrary files with Samsung Keyboard privilege. | |||||
CVE-2023-30706 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 7.5 HIGH |
Improper authorization in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows attacker to read arbitrary file with system privilege. | |||||
CVE-2023-30701 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.7 MEDIUM |
PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file access. | |||||
CVE-2023-30700 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 5.3 MEDIUM |
PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local attackers to access ContentProvider without proper permission. | |||||
CVE-2023-30699 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 7.5 HIGH |
Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows code execution by remote attackers. | |||||
CVE-2023-30698 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 5.5 MEDIUM |
Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BLE without privilege. | |||||
CVE-2023-30697 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.4 MEDIUM |
An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write. | |||||
CVE-2023-30696 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.4 MEDIUM |
An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write. | |||||
CVE-2023-30694 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30693 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30692 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 8.5 HIGH |
Improper input validation vulnerability in Evaluator prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities. | |||||
CVE-2023-30691 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 8.4 HIGH |
Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to privilege escalation. | |||||
CVE-2023-30690 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 8.5 HIGH |
Improper input validation vulnerability in Duo prior to SMR Oct-2023 Release 1 allows local attackers to launch privileged activities. | |||||
CVE-2023-30689 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30688 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30687 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30686 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 6.7 MEDIUM |
Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitrary code. | |||||
CVE-2023-30685 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.3 MEDIUM |
Improper access control vulnerability in Telecom prior to SMR Aug-2023 Release 1 allows local attakcers to change TTY mode. | |||||
CVE-2023-30684 | 1 Samsung | 1 Android | 2024-11-21 | N/A | 4.3 MEDIUM |
Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call acceptRingingCall API without permission. |