VYPR

Android

by Samsung Mobile

CVEs (475)

  • CVE-2023-30713MedSep 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper privilege management vulnerability in FolderLockNotifier in One UI Home prior to SMR Sep-2023 Release 1 allows local attackers to change some settings of the folder lock.

  • CVE-2023-30662MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Exposure of Sensitive Information vulnerability in getChipIds in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

  • CVE-2023-30661MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Exposure of Sensitive Information vulnerability in getChipInfos in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

  • CVE-2023-30660MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Exposure of Sensitive Information vulnerability in getDefaultChipId in UwbAospAdapterService prior to SMR Jul-2023 Release 1 allows local attackers to access the UWB chipset Identifier.

  • CVE-2023-30659MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper input validation vulnerability in Transaction prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30657MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attackers to launch privileged activities.

  • CVE-2023-30642MedJul 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to call privilege function.

  • CVE-2023-21513MedJun 28, 2023
    risk 0.40cvss 6.1epss 0.00

    Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition.

  • CVE-2023-21496MedMay 4, 2023
    risk 0.40cvss 6.1epss 0.00

    Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug level.

  • CVE-2023-21458MedMar 16, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows attacker to turn off Do not disturb via unprotected intent.

  • CVE-2023-21446MedFeb 9, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper input validation in MyFiles prior to version 12.2.09 in Android R(11), 13.1.03.501 in Android S( 12) and 14.1.00.422 in Android T(13) allows local attacker to access data of MyFiles.

  • CVE-2023-21440MedFeb 9, 2023
    risk 0.40cvss 6.2epss 0.00

    Improper access control vulnerability in WindowManagerService prior to SMR Feb-2023 Release 1 allows attackers to take a screen capture.

  • CVE-2026-20982MedFeb 4, 2026
    risk 0.39cvss 6.0epss 0.00

    Path traversal in ShortcutService prior to SMR Feb-2026 Release 1 allows privileged local attacker to create file with system privilege.

  • CVE-2023-21478MedSep 3, 2025
    risk 0.39cvss 6.0epss 0.00

    Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

  • CVE-2025-21010MedAug 6, 2025
    risk 0.39cvss 6.0epss 0.00

    Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to deactivate Samsung account.

  • CVE-2025-20907MedFeb 4, 2025
    risk 0.39cvss 6.0epss 0.00

    Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find.

  • CVE-2024-20862MedMay 7, 2024
    risk 0.39cvss 6.0epss 0.00

    Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.

  • CVE-2024-20861MedMay 7, 2024
    risk 0.39cvss 6.0epss 0.00

    Use after free vulnerability in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to cause memory corruption.

  • CVE-2023-42558MedDec 5, 2023
    risk 0.39cvss 6.0epss 0.00

    Out of bounds write vulnerability in HDCP in HAL prior to SMR Dec-2023 Release 1 allows attacker to perform code execution.

  • CVE-2023-21500MedMay 4, 2023
    risk 0.39cvss 6.0epss 0.00

    Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet memory.

Page 11 of 24