Vulnerabilities in Samsung Mobile

1,316 results
Vexday analysis

Samsung Mobile acumula 1.316 CVEs catalogadas, com 13 confirmadas em exploração ativa pelo CISA KEV — uma taxa 2,2 vezes acima da média geral do catálogo, o que indica exposição operacional relevante e exige atenção prioritária na gestão de patches. O tipo de falha mais recorrente é CWE-20 (validação inadequada de entrada), sugerindo fragilidades sistemáticas no tratamento de dados externos que tendem a gerar superfícies amplas de ataque. A CVE mais perigosa em exploração ativa no momento é CVE-2025-21042, com escore EPSS de 0,1161, enquanto 34 novas vulnerabilidades surgiram nos últimos 90 dias, sinalizando um ritmo de descoberta contínuo que demanda monitoramento frequente. Com apenas 3 CVEs acompanhadas de PoC pública e EPSS máximo observado de 0,1289, o risco de exploração massiva imediata é moderado, mas a combinação de falhas ativas confirmadas e volume crescente de novas entradas justifica ciclos curtos de atualização de firmware em ambientes corporativos.

CVE-2024-20811MEDIUMImproper caller verification in GameOptimizer prior to SMR Feb-2024 Release 1 allows local attackers to configure GameOptimizer.EPSS 0.1%CVE-2025-20940MEDIUMImproper handling of insufficient permission in Samsung Device Health Manager Service prior to SMR Apr-2025 Release 1 allows local attackersEPSS 0.1%CVE-2023-30718MEDIUMImproper export of android application components vulnerability in WifiApAutoHotspotEnablingActivity prior to SMR Sep-2023 Release 1 allows EPSS 0.1%CVE-2023-30683MEDIUMImproper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call endCall API without permission.EPSS 0.1%CVE-2025-21018MEDIUMOut-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bounds memory.EPSS 0.1%CVE-2024-20830MEDIUMIncorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.EPSS 0.1%CVE-2026-20987HIGHImproper input validation in GalaxyDiagnostics prior to version 3.5.050 allows local privileged attackers to execute privileged commands.EPSS 0.1%CVE-2025-21013MEDIUMImproper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive infoEPSS 0.1%CVE-2022-27828HIGHImproper validation vulnerability in MediaMonitorEvent prior to SMR Apr-2022 Release 1 allows attackers to launch certain activities.EPSS 0.1%CVE-2024-20900MEDIUMImproper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authenticEPSS 0.1%CVE-2025-21037MEDIUMImproper access control in Samsung Notes prior to version 4.4.30.63 allows physical attackers to access data across multiple user profiles. EPSS 0.1%CVE-2022-27827HIGHImproper validation vulnerability in MediaMonitorDimension prior to SMR Apr-2022 Release 1 allows attackers to launch certain activities.EPSS 0.1%CVE-2023-30679HIGHImproper access control in HDCP trustlet prior to SMR Aug-2023 Release 1 allows local attackers to execute arbitrary code.EPSS 0.1%CVE-2025-20909MEDIUMUse of implicit intent for sensitive communication in Settings prior to SMR Mar-2025 Release 1 allows local attackers to access sensitive inEPSS 0.1%CVE-2024-49408MEDIUMOut-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memoEPSS 0.1%CVE-2024-49409MEDIUMOut-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write ouEPSS 0.1%CVE-2024-20851MEDIUMImproper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch arbitrary activity wiEPSS 0.1%CVE-2024-20852MEDIUMImproper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to acceEPSS 0.1%CVE-2026-20975LOWImproper handling of insufficient permission in Samsung Cloud prior to version 5.6.11 allows local attackers to access specific files in arbEPSS 0.1%CVE-2024-49416MEDIUMUse of implicit intent for sensitive communication in SmartThings prior to version 1.8.21 allows local attackers to get sensitive informatioEPSS 0.1%