Total
36333 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2024-20866 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 5.7 MEDIUM |
| Authentication bypass vulnerability in Setupwizard prior to SMR May-2024 Release 1 allows physical attackers to skip activation step. | |||||
| CVE-2024-20865 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 6.6 MEDIUM |
| Authentication bypass in bootloader prior to SMR May-2024 Release 1 allows physical attackers to flash arbitrary images. | |||||
| CVE-2024-20864 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper access control vulnerability in DarManagerService prior to SMR May-2024 Release 1 allows local attackers to monitor system resources. | |||||
| CVE-2024-20859 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper access control vulnerability in FactoryCamera prior to SMR May-2024 Release 1 allows local attackers to take pictures without privilege. | |||||
| CVE-2024-20858 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 4.0 MEDIUM |
| Improper access control vulnerability in setCocktailHostCallbacks of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application. | |||||
| CVE-2024-20857 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 4.0 MEDIUM |
| Improper access control vulnerability in startListening of CocktailBarService prior to SMR May-2024 Release 1 allows local attackers to access information of current application. | |||||
| CVE-2024-20855 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 2.4 LOW |
| Improper access control vulnerability in multitasking framework prior to SMR May-2024 Release 1 allows physical attackers to access unlocked screen for a while. | |||||
| CVE-2024-20851 | 1 Samsung | 1 Cloud | 2026-06-17 | N/A | 4.4 MEDIUM |
| Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch arbitrary activity with Samsung Data Store privilege. | |||||
| CVE-2024-20847 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 4.0 MEDIUM |
| Improper Access Control vulnerability in StorageManagerService prior to SMR Apr-2024 Release 1 allows local attackers to read sdcard information. | |||||
| CVE-2024-20839 | 2 Google, Samsung | 2 Android, Voice Recorder | 2026-06-17 | N/A | 4.6 MEDIUM |
| Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers to access recording files on the lock screen. | |||||
| CVE-2024-20838 | 1 Samsung | 1 Internet | 2026-06-17 | N/A | 6.8 MEDIUM |
| Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code. | |||||
| CVE-2024-20837 | 1 Samsung | 1 Internet | 2026-06-17 | N/A | 5.3 MEDIUM |
| Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction. | |||||
| CVE-2024-20835 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 4.0 MEDIUM |
| Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local attackers to execute privileged behaviors. | |||||
| CVE-2024-20834 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 3.3 LOW |
| The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission. | |||||
| CVE-2024-20829 | 1 Samsung | 1 Internet | 2026-06-17 | N/A | 5.4 MEDIUM |
| Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers to open an application without proper interaction. | |||||
| CVE-2024-20825 | 1 Samsung | 1 Galaxy Store | 2026-06-17 | N/A | 5.5 MEDIUM |
| Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | |||||
| CVE-2024-20824 | 1 Samsung | 1 Galaxy Store | 2026-06-17 | N/A | 5.5 MEDIUM |
| Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | |||||
| CVE-2024-20823 | 1 Samsung | 1 Galaxy Store | 2026-06-17 | N/A | 5.5 MEDIUM |
| Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | |||||
| CVE-2024-20822 | 1 Samsung | 1 Galaxy Store | 2026-06-17 | N/A | 5.5 MEDIUM |
| Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attackers to access sensitive information via implicit intent. | |||||
| CVE-2024-20811 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 5.1 MEDIUM |
| Improper caller verification in GameOptimizer prior to SMR Feb-2024 Release 1 allows local attackers to configure GameOptimizer. | |||||
