|
250621
|
7.5 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0, 7.1) software. An unauthenticated attacker can register a new security certificate. The Samsung ID is SVE-2017-9659 (September…
|
CWE-287
Improper Authentication
|
CVE-2017-18654
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250622
|
4.3 |
MEDIUM
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.x) software. The Email application allows attackers to send emails on behalf of any user via a broadcasted …
|
NVD-CWE-noinfo
|
CVE-2017-18653
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250623
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. SVoice allows arbitrary code execution by changing dynamic libraries. The Samsung ID is SVE-2017-9299 (September 201…
|
CWE-74
Injection
|
CVE-2017-18652
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250624
|
7.5 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is an Integer Overflow in process_M_SetTokenTUIPasswd during handling of a trusted application, leading to mem…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-18651
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250625
|
7.5 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.x) software. There is a WifiStateMachine IllegalArgumentException and reboot if a malformed wpa_supplicant.conf is read. The Samsung ID is S…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2017-18650
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250626
|
7.2 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.x) software. An attacker can boot a device with root privileges because the bootloader for the Qualcomm MSM8998 chipset lacks an integrity c…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2017-18649
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250627
|
9.1 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with KK(4.4.x), L(5.x), M(6.x), and N(7.x) software. Arbitrary file read/write operations can occur in the locked state via a crafted MTP command. Th…
|
CWE-20
Improper Input Validation
|
CVE-2017-18648
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250628
|
8.1 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with M(6,x) and N(7.0) software. The TA Scrypto v1.0 implementation in Secure Driver has a race condition with a resultant buffer overflow. The Samsu…
|
CWE-362
Race Condition
|
CVE-2017-18647
|
2024-11-21 12:20 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250629
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (Exynos7420, Exynos8890, or MSM8996 chipsets) software. RKP allows memory corruption. The Samsung ID is SVE-2016-7897 (January…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-18696
|
2024-11-21 12:20 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250630
|
6.5 |
MEDIUM
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. Attackers (who control a certain subdomain) can discover a user's credentials, during an email…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-18695
|
2024-11-21 12:20 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|