Samsung
Samsung Smart Switch: vulnerabilidades y CVE
Samsung Smart Switch tiene 17 vulnerabilidades publicadas, 16 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE17
Últimos 12 meses16
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-21083 | Media (6.8) | 0.26% | — | 10 ago 2026 | Improper input validation in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. |
| CVE-2026-21080 | Media (6.9) | 0.17% | — | 10 ago 2026 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. |
| CVE-2026-21079 | Alta (7) | 0.10% | — | 10 ago 2026 | Missing encryption of sensitive data in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to intercept transmitted data. |
| CVE-2026-21078 | Media (4.7) | 0.16% | — | 10 ago 2026 | Insufficient verification of data authenticity in Smart Switch trouble scanning mode prior to version 3.7.72.6 allows adjacent attackers to spoof device identity. |
| CVE-2026-21005 | Alta (7.1) | 0.24% | — | 16 mar 2026 | Path traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files with Smart Switch privilege. |
| CVE-2026-21004 | Media (6.9) | 0.18% | — | 16 mar 2026 | Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service. |
| CVE-2026-20999 | Alta (7.1) | 0.31% | — | 16 mar 2026 | Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger privileged functions. |
| CVE-2026-20998 | Alta (7.1) | 0.55% | — | 16 mar 2026 | Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authentication. |
| CVE-2026-20997 | Media (5.3) | 0.26% | — | 16 mar 2026 | Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attackers to potentially bypass authentication. |
| CVE-2026-20996 | Alta (7.1) | 0.17% | — | 16 mar 2026 | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attackers to configure a downgraded scheme for authentication. |
| CVE-2026-20995 | Media (5.3) | 0.28% | — | 16 mar 2026 | Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows remote attackers to set a specific configuration. |
| CVE-2025-21078 | Media (6.5) | 0.21% | — | 5 nov 2025 | Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications. |
| CVE-2025-21064 | Media (6.5) | 0.27% | — | 10 oct 2025 | Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data. |
| CVE-2025-21062 | Alta (7.8) | 0.10% | — | 10 oct 2025 | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability. |
| CVE-2025-21061 | Media (5.5) | 0.10% | — | 10 oct 2025 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability. |
| CVE-2025-21060 | Media (5.5) | 0.10% | — | 10 oct 2025 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability. |
| CVE-2025-20996 | Media (5) | 0.13% | — | 4 jun 2025 | Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this… |