cbcvebase.

Samsung Internet vulnerabilities

29 known vulnerabilities affecting samsung/internet.

Total CVEs
29
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM21LOW3

Vulnerabilities

Page 2 of 2
CVE-2021-25354P4MEDIUMCVSS 5.3fixed in 13.2.1.462021-03-25
CVE-2021-25354 [MEDIUM] CWE-285 CVE-2021-25354: Improper input check in Samsung Internet prior to version 13.2.1.46 allows attackers to launch non-e Improper input check in Samsung Internet prior to version 13.2.1.46 allows attackers to launch non-exported activity in Samsung Browser via malicious deeplink.
nvd
CVE-2023-30704P4MEDIUMCVSS 4.6fixed in 22.0.0.352023-08-10
CVE-2023-30704 [MEDIUM] CVE-2023-30704: Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication.
nvd
CVE-2022-27839P4MEDIUMCVSS 4.0fixed in 16.2.12022-04-11
CVE-2022-27839 [MEDIUM] CWE-287 CVE-2022-27839: Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allo Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allows attackers to access bookmark tab without proper credentials.
nvd
CVE-2022-39873P4MEDIUMCVSS 4.6fixed in 18.0.4.142022-10-07
CVE-2022-39873 [MEDIUM] CWE-285 CVE-2022-39873: Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add bookmarks in secret mode without user authentication.
nvd
CVE-2022-30738P4MEDIUMCVSS 4.3fixed in 17.0.1.692022-06-07
CVE-2022-30738 [MEDIUM] CWE-703 CVE-2022-30738: Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address ba Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing script.
nvd
CVE-2022-30740P4MEDIUMCVSS 4.3fixed in 17.0.1.692022-06-07
CVE-2022-30740 [MEDIUM] CWE-200 CVE-2022-30740: Improper auto-fill algorithm in Samsung Internet prior to version 17.0.1.69 allows physical attacker Improper auto-fill algorithm in Samsung Internet prior to version 17.0.1.69 allows physical attackers to guess stored credit card numbers.
nvd
CVE-2021-25521P4LOWCVSS 3.3fixed in 16.0.22021-12-08
CVE-2021-25521 [LOW] CWE-285 CVE-2021-25521: Insecure caller check in sharevia deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted Insecure caller check in sharevia deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to get current tab URL in Samsung Internet.
nvd
CVE-2021-25366P4LOWCVSS 2.9fixed in 13.2.1.702021-03-25
CVE-2021-25366 [LOW] CWE-703 CVE-2021-25366: Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate a Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass the secret mode's authentication.
nvd
CVE-2021-25348P4LOWCVSS 2.4fixed in 13.0.1.602021-03-04
CVE-2021-25348 [LOW] CWE-703 CVE-2021-25348: Improper permission grant check in Samsung Internet prior to version 13.0.1.60 allows access to file Improper permission grant check in Samsung Internet prior to version 13.0.1.60 allows access to files in internal storage without authorized STORAGE permission.
nvd
Samsung Internet vulnerabilities | cvebase