Common Vulnerabilities and Exposures (CVE) is a critical tool for maintaining software security, providing a standardized way to track and manage vulnerabilities across systems. Organizations should regularly monitor CVE databases, assess the impact of vulnerabilities, and apply patches promptly to reduce the risk of exploitation.
CVE (Common Vulnerabilities and Exposures) is a public database that provides a standardized method for identifying, tracking, and referencing publicly disclosed security vulnerabilities in software and hardware.
Each vulnerability receives a unique identifier called a CVE ID (e.g., CVE-2023-12345), making it easier to reference specific vulnerabilities across different tools and databases.
Total Search Results: 158437
CVE ID | Description | Severity | Published Date | Affected Vendor | Action |
---|---|---|---|---|---|
CVE-2021-25380 | Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions registered by the user. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25381 | Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25382 | An improper authorization of using debugging command in Secure Folder prior to SMR Oct-2020 Release 1 allows unauthorized access to contents in Secure Folder via debugging command. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25383 | An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25384 | An improper input validation vulnerability in sdfffd_parse_chunk_PROP() with Sample Rate Chunk in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25385 | An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25386 | An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25387 | An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25388 | Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25389 | Improper running task check in S Secure prior to SMR MAY-2021 Release 1 allows attackers to use locked app without authentication. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25390 | Intent redirection vulnerability in PhotoTable prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25391 | Intent redirection vulnerability in Secure Folder prior to SMR MAY-2021 Release 1 allows attackers to execute privileged action. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25392 | Improper protection of backup path configuration in Samsung Dex prior to SMR MAY-2021 Release 1 allows local attackers to get sensitive information via changing the path. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25393 | Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25394 | A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25395 | A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25396 | An improper input validation vulnerability in NPU firmware prior to SMR MAY-2021 Release 1 allows arbitrary memory write and code execution. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25397 | An improper access control vulnerability in TelephonyUI prior to SMR MAY-2021 Release 1 allows local attackers to write arbitrary files of telephony process via untrusted applications. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25398 | Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25399 | Improper configuration in Smart Manager prior to version 11.0.05.0 allows attacker to access the file with system privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25400 | Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25401 | Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25402 | Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25403 | Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25404 | Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25405 | An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25406 | Information exposure vulnerability in Gear S Plugin prior to version 2.2.05.20122441 allows unstrusted applications to access connected BT device information. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25407 | A possible out of bounds write vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25408 | A possible buffer overflow vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write and code execution. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25409 | Improper access in Notification setting prior to SMR JUN-2021 Release 1 allows physically proximate attackers to set arbitrary notification via physically configuring device. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25410 | Improper access control of a component in CallBGProvider prior to SMR JUN-2021 Release 1 allows local attackers to access arbitrary files with an escalated privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25411 | Improper address validation vulnerability in RKP api prior to SMR JUN-2021 Release 1 allows root privileged local attackers to write read-only kernel memory. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25412 | An improper access control vulnerability in genericssoservice prior to SMR JUN-2021 Release 1 allows local attackers to execute protected activity with system privilege via untrusted applications. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25413 | Improper sanitization of incoming intent in Samsung Contacts prior to SMR JUN-2021 Release 1 allows local attackers to get permissions to access arbitrary data with Samsung Contacts privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25414 | Improper sanitization of incoming intent in Samsung Contacts prior to SMR JUN-2021 Release 1 allows local attackers to copy or overwrite arbitrary files with Samsung Contacts privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25415 | Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attackers to remap EL2 memory as writable. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25416 | Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attackers to create executable kernel page outside code area. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25417 | Improper authorization in SDP SDK prior to SMR JUN-2021 Release 1 allows access to internal storage. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25418 | Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications to execute arbitrary activity in specific condition. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25419 | Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar via phising URL link. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25420 | Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25421 | Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25422 | Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25423 | Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone via log. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25424 | Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the user's bluetooth device without user awareness. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25425 | Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exported component. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25426 | Improper component protection vulnerability in SmsViewerActivity of Samsung Message prior to SMR July-2021 Release 1 allows untrusted applications to access Message files. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25427 | SQL injection vulnerability in Bluetooth prior to SMR July-2021 Release 1 allows unauthorized access to paired device information | Unknown | N/A | Samsung Mobile | |
CVE-2021-25428 | Improper validation check vulnerability in PackageManager prior to SMR July-2021 Release 1 allows untrusted applications to get dangerous level permission without user confirmation in limited circumstances. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25429 | Improper privilege management vulnerability in Bluetooth application prior to SMR July-2021 Release 1 allows untrusted application to access the Bluetooth information in Bluetooth application. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25430 | Improper access control vulnerability in Bluetooth application prior to SMR July-2021 Release 1 allows untrusted application to access the Bluetooth information in Bluetooth application. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25431 | Improper access control vulnerability in Cameralyzer prior to versions 3.2.1041 in 3.2.x, 3.3.1040 in 3.3.x, and 3.4.4210 in 3.4.x allows untrusted applications to access some functions of Cameralyzer. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25432 | Information exposure vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to access chat data. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25433 | Improper authorization vulnerability in Tizen factory reset policy prior to Firmware update JUL-2021 Release allows untrusted applications to perform factory reset using dbus signal. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25434 | Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using param partition in wireless firmware download mode. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25435 | Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using recovery partition in wireless firmware download mode. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25436 | Improper input validation vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows arbitrary code execution via Samsung Accessory Protocol. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25437 | Improper access control vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows attackers to arbitrary code execution by replacing FOTA update file. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25438 | Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause local file inclusion in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25439 | Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25440 | Improper access control vulnerability in FactoryCameraFB prior to version 3.4.74 allows untrusted applications to access arbitrary files with an escalated privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25441 | Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to access arbitrary files with an escalated privilege. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25442 | Improper MDM policy management vulnerability in KME module prior to KCS version 1.39 allows MDM users to bypass Knox Manage authentication. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25443 | A use after free vulnerability in conn_gadget driver prior to SMR AUG-2021 Release 1 allows malicious action by an attacker. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25444 | An IV reuse vulnerability in keymaster prior to SMR AUG-2021 Release 1 allows decryption of custom keyblob with privileged process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25445 | Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Internet. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25446 | Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25447 | Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause local file inclusion in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25448 | Improper access control vulnerability in Smart Touch Call prior to version 1.0.0.5 allows arbitrary webpage loading in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25449 | An improper input validation vulnerability in libsapeextractor library prior to SMR Sep-2021 Release 1 allows attackers to execute arbitrary code in mediaextractor process. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25450 | Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Sep-2021 Release 1 allows attackers to write file as system uid via remote socket. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25451 | A PendingIntent hijacking in NetworkPolicyManagerService prior to SMR Sep-2021 Release 1 allows attackers to get IMSI data. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25452 | An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows attackers to perform permanent denial of service on the device. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25453 | Some improper access control in Bluetooth APIs prior to SMR Sep-2021 Release 1 allows untrusted application to get Bluetooth information. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25454 | OOB read vulnerability in libsaacextractor.so library prior to SMR Sep-2021 Release 1 allows attackers to execute remote DoS via forged aac file. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25455 | OOB read vulnerability in libsaviextractor.so library prior to SMR Sep-2021 Release 1 allows attackers to access arbitrary address through pointer via forged avi file. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25456 | OOB read vulnerability in libswmfextractor.so library prior to SMR Sep-2021 Release 1 allows attackers to execute memcpy at arbitrary address via forged wmf file. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25457 | An improper input validation vulnerability in DSP driver prior to SMR Sep-2021 Release 1 allows local attackers to get a limited kernel memory information. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25458 | NULL pointer dereference vulnerability in ION driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25459 | An improper access control vulnerability in sspInit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to start BlockchainTZService. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25460 | An improper access control vulnerability in sspExit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows attackers to terminate BlockchainTZService. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25461 | An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25462 | NULL pointer dereference vulnerability in NPU driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25463 | Improper access control vulnerability in PENUP prior to version 3.8.00.18 allows arbitrary webpage loading in webview. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25464 | An improper file management vulnerability in SamsungCapture prior to version 4.8.02 allows sensitive information leak. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25465 | An improper scheme check vulnerability in Samsung Themes prior to version 5.2.01 allows attackers to perform Man-in-the-middle attack. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25466 | Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-the-middle attack and obtain Samsung Account token. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25467 | Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows privilege escalation to Root by hijacking loaded library. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25468 | A possible guessing and confirming a byte memory vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows attackers to read arbitrary memory address. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25469 | A possible stack-based buffer overflow vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows arbitrary code execution. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25470 | An improper caller check logic of SMC call in TEEGRIS secure OS prior to SMR Oct-2021 Release 1 can be used to compromise TEE. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25471 | A lack of replay attack protection in Security Mode Command process prior to SMR Oct-2021 Release 1 can lead to denial of service on mobile network connection and battery depletion. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25472 | An improper access control vulnerability in BluetoothSettingsProvider prior to SMR Oct-2021 Release 1 allows untrusted application to overwrite some Bluetooth information. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25473 | Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_hide_by_meadia_full value in SystemUI prior to SMR Oct-2021 Release 1 allows an attacker to cause a permanent denial of service in user device before factory reset. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25474 | Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_show_on_qspanel value in SystemUI prior to SMR Oct-2021 Release 1 allows an attacker to cause a permanent denial of service in user device before factory reset. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25475 | A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25476 | An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass the ASLR protection mechanism in TEE. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25477 | An improper error handling in Mediatek RRC Protocol stack prior to SMR Oct-2021 Release 1 allows modem crash and remote denial of service. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25478 | A possible stack-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution. | Unknown | N/A | Samsung Mobile | |
CVE-2021-25479 | A possible heap-based buffer overflow vulnerability in Exynos CP Chipset prior to SMR Oct-2021 Release 1 allows arbitrary memory write and code execution. | Unknown | N/A | Samsung Mobile |
vunerability-insight.com © 2023 - 2025. All Rights Reserved.
Vulnerability Data Repositories v