Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2697▼ 181 respecto a la semana anterior
Críticas / altas1225▼ 327 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)244▲ 208 respecto a la semana anterior
–

1690 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.22%—Samsung Exynos 5123 FirmwareSamsung Exynos 5300 FirmwareSamsung Exynos 980 FirmwareSamsung Exynos 1080 Firmware9/5/202317/6/2026
An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, and Exynos 1080. Binding of a wrong resource can occur due to improper handling of parameters while binding a network interface.
ModificadaMedia (5.5)0.17%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Read vulnerability while processing CMD_COLDWALLET_BTC_SET_PRV_UTXO in bc_core trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
ModificadaMedia (5.5)0.17%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
ModificadaAlta (7.8)0.19%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
ModificadaAlta (7.8)0.19%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
ModificadaMedia (5.5)0.17%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.
ModificadaAlta (7.8)0.19%—Samsung Blockchain Keystore4/5/202317/6/2026
Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
ModificadaAlta (8.6)0.30%—Samsung Core Services4/5/202317/6/2026
Improper access control in Samsung Core Service prior to version 2.1.00.36 allows attacker to write arbitrary file in sandbox.
ModificadaCrítica (9.8)0.62%—Samsung Android4/5/202317/6/2026
Potential buffer overflow vulnerability in mm_Plmncoordination.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
ModificadaCrítica (9.8)0.62%—Samsung Android4/5/202317/6/2026
Potential buffer overflow vulnerability in mm_LteInterRatManagement.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
ModificadaAlta (7.8)0.18%—Samsung Android4/5/202317/6/2026
Improper input validation vulnerability in FactoryTest application prior to SMR May-2023 Release 1 allows local attackers to get privilege escalation via debugging commands.
ModificadaAlta (7.8)0.19%—Samsung Android4/5/202317/6/2026
Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.
ModificadaMedia (5.5)0.17%—Samsung Android4/5/202317/6/2026
Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet memory.
ModificadaAlta (7.8)0.19%—Samsung Android4/5/202317/6/2026
Out-of-bounds write vulnerability in TA_Communication_mpos_encrypt_pin in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.
ModificadaAlta (7.8)0.18%—Samsung Android4/5/202317/6/2026
Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet memory.
ModificadaAlta (7.8)0.18%—Samsung Android4/5/202317/6/2026
Use of externally-controlled format string vulnerability in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the memory address.
ModificadaMedia (5.5)0.18%—Samsung Android4/5/202317/6/2026
Active Debug Code vulnerability in ActivityManagerService prior to SMR May-2023 Release 1 allows attacker to use debug function via setting debug level.
ModificadaMedia (5.5)0.15%—Samsung Android4/5/202317/6/2026
Improper access control vulnerability in Knox Enrollment Service prior to SMR May-2023 Release 1 allow attacker install KSP app when device admin is set.
ModificadaCrítica (9.8)0.66%—Samsung Android4/5/202317/6/2026
Potential buffer overflow vulnerability in auth api in mm_Authentication.c in Shannon baseband prior to SMR May-2023 Release 1 allows remote attackers to cause invalid memory access.
ModificadaMedia (5.5)0.15%—Samsung Android4/5/202317/6/2026
Improper access control vulnerability in SemShareFileProvider prior to SMR May-2023 Release 1 allows local attackers to access protected data.
AnalizadaMedia (4.4)2.6%⚠ Explotación activaSamsung Android4/5/202317/6/2026
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.
ModificadaAlta (7.8)0.15%—Samsung Android4/5/202317/6/2026
Improper access control vulnerability in ThemeManager prior to SMR May-2023 Release 1 allows local attackers to write arbitrary files with system privilege.
ModificadaAlta (7.1)0.13%—Samsung Android4/5/202317/6/2026
Improper access control in GearManagerStub prior to SMR May-2023 Release 1 allows a local attacker to delete applications installed by watchmanager.
ModificadaMedia (6.8)0.27%—Samsung Android4/5/202317/6/2026
Heap out-of-bounds write vulnerability in bootloader prior to SMR May-2023 Release 1 allows a physical attacker to execute arbitrary code.
ModificadaAlta (7.8)0.15%—Samsung Android4/5/202317/6/2026
Improper access control vulnerablility in Tips prior to SMR May-2023 Release 1 allows local attackers to launch arbitrary activity in Tips.