Samsung
Samsung Health: vulnerabilidades y CVE
Samsung Health tiene 15 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE15
Últimos 12 meses5
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-21082 | Media (6.9) | 0.17% | — | 10 ago 2026 | Relative path traversal in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. |
| CVE-2026-21077 | Media (6.9) | 0.13% | — | 10 ago 2026 | Incorrect authorization in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. |
| CVE-2026-21076 | Media (6.9) | 0.13% | — | 10 ago 2026 | Incorrect authorization in Samsung Health prior to version 7.0.0 allows local attackers to access sensitive information. |
| CVE-2026-21056 | Media (4.8) | 0.13% | — | 10 jul 2026 | Improper authorization in Samsung Health prior to version 7.00.0.107 allows local attackers to access connected device information. |
| CVE-2025-21059 | Media (5.5) | 0.12% | — | 10 oct 2025 | Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung Health. |
| CVE-2025-21019 | Media (5.5) | 0.14% | — | 6 ago 2025 | Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this vulnerability. |
| CVE-2024-34597 | Baja (3.3) | 0.15% | — | 2 jul 2024 | Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this… |
| CVE-2023-42539 | Media (5.5) | 0.16% | — | 7 nov 2023 | PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows local attackers to access data. |
| CVE-2023-30737 | Media (5.5) | 0.18% | — | 4 oct 2023 | Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent. |
| CVE-2023-30734 | Media (5.5) | 0.18% | — | 4 oct 2023 | Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent. |
| CVE-2023-30723 | Crítica (9.8) | 0.40% | — | 6 sept 2023 | Improper input validation vulnerability in Samsung Health prior to version 6.24.2.011 allows attackers to write arbitrary file with Samsung Health privilege. |
| CVE-2022-22283 | Baja (3.3) | 0.20% | — | 10 ene 2022 | Improper session management vulnerability in Samsung Health prior to 6.20.1.005 prevents logging out from Samsung Health App. |
| CVE-2021-25506 | Media (5.5) | 0.20% | — | 5 nov 2021 | Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service. |
| CVE-2021-25425 | Media (5.3) | 0.79% | — | 11 jun 2021 | Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exported component. |
| CVE-2021-25401 | Alta (7.8) | 0.26% | — | 11 jun 2021 | Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action. |