cbcvebase.

Samsung Account vulnerabilities

28 known vulnerabilities affecting samsung/account.

Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM20LOW4

Vulnerabilities

Page 2 of 2
CVE-2022-39874P4MEDIUMCVSS 5.5fixed in 13.5.01.32022-10-07
CVE-2022-39874 [MEDIUM] CWE-779 CVE-2022-39874: Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows at Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
nvd
CVE-2022-39863P4MEDIUMCVSS 4.7fixed in 13.5.01.32022-10-07
CVE-2022-39863 [MEDIUM] CWE-20 CVE-2022-39863: Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to a Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content providers without permission.
nvd
CVE-2022-30739P4MEDIUMCVSS 4.3fixed in 13.2.00.62022-06-07
CVE-2022-30739 [MEDIUM] CWE-269 CVE-2022-30739: Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers t Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get an user email or phone number with a normal level permission.
nvd
CVE-2022-39875P4MEDIUMCVSS 4.4fixed in 13.5.01.32022-10-07
CVE-2022-39875 [MEDIUM] CWE-284 CVE-2022-39875: Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attack Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
nvd
CVE-2025-58487P4LOWCVSS 3.3fixed in 15.5.01.12025-12-02
CVE-2025-58487 [LOW] CVE-2025-58487: Improper authorization in Samsung Account prior to version 15.5.01.1 allows local attacker to launch Improper authorization in Samsung Account prior to version 15.5.01.1 allows local attacker to launch arbitrary activity with Samsung Account privilege.
nvd
CVE-2021-25403P4LOWCVSS 3.3fixed in 10.8.0.4v12.2.0.92021-06-11
CVE-2021-25403 [LOW] CWE-200 CVE-2021-25403: Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.
nvd
CVE-2021-25350P4LOWCVSS 3.9fixed in 12.1.1.32021-03-25
CVE-2021-25350 [LOW] CWE-200 CVE-2021-25350: Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically pr Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically proximate attackers to access user information via log.
nvd
CVE-2021-25351P4LOWCVSS 2.4fixed in 10.7.07fixed in 12.1.1.32021-03-25
CVE-2021-25351 [LOW] CWE-285 CVE-2021-25351: Improper Access Control in EmailValidationView in Samsung Account prior to version 10.7.0.7 and 12.1 Improper Access Control in EmailValidationView in Samsung Account prior to version 10.7.0.7 and 12.1.1.3 allows physically proximate attackers to log out user account on device without user password.
nvd
Samsung Account vulnerabilities | cvebase