Samsung Email vulnerabilities

5 known vulnerabilities affecting samsung/samsung_email.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2022-36864HIGHCVSS 7.8fixed in 6.1.70.202022-09-09
CVE-2022-36864 [MEDIUM] CWE-284 CVE-2022-36864: Improper access control and intent redirection in Samsung Email prior to 6.1.70.20 allows attacker t Improper access control and intent redirection in Samsung Email prior to 6.1.70.20 allows attacker to access specific formatted file and execute privileged behavior.
nvd
CVE-2022-36837MEDIUMCVSS 5.5fixed in 6.1.70.202022-08-05
CVE-2022-36837 [MEDIUM] CWE-285 CVE-2022-36837: Intent redirection vulnerability using implicit intent in Samsung email prior to version 6.1.70.20 a Intent redirection vulnerability using implicit intent in Samsung email prior to version 6.1.70.20 allows attacker to get sensitive information.
nvd
CVE-2022-22287MEDIUMCVSS 4.6fixed in 6.1.60.162022-01-10
CVE-2022-22287 [LOW] CWE-20 CVE-2022-22287: Abitrary file access vulnerability in Samsung Email prior to 6.1.60.16 allows attacker to read isola Abitrary file access vulnerability in Samsung Email prior to 6.1.60.16 allows attacker to read isolated data in sandbox.
nvd
CVE-2018-10497HIGHCVSS 7.8fixed in 5.0.02.16vFixed in version 5.0.02.162018-09-24
CVE-2018-10497 [HIGH] CWE-20 CVE-2018-10497: This vulnerability allows local attackers to escalate privileges on vulnerable installations of Sams This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of EML files. The issue results from
cvelistv5nvd
CVE-2018-10498MEDIUMCVSS 5.5fixed in 5.0.02.16vFixed in version 5.0.02.162018-09-24
CVE-2018-10498 [MEDIUM] CWE-37 CVE-2018-10498: This vulnerability allows local attackers to disclose sensitive information on vulnerable installati This vulnerability allows local attackers to disclose sensitive information on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of file:/// URIs. The is
cvelistv5nvd