Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2663▼ 380 respecto a la semana anterior
Críticas / altas1289▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
–

16 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisAlta (8.6)0.16%—Samsung Galaxy WatchAI13/5/202617/6/2026
Improper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute arbitrary code with system privilege.
AplazadaBaja (3.3)0.12%—Samsung Galaxy WatchAIGoogle Android WatchAI6/8/202517/6/2026
Improper access control in WcsExtension for Galaxy Watch prior to Android Watch 16 allows local attackers to access sensitive information.
AplazadaMedia (6.2)0.14%—Samsung Galaxy WatchAI6/8/202517/6/2026
Improper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to outdoor exercise and sleep time.
AplazadaMedia (5.5)0.12%—Samsung Galaxy WatchAI6/8/202517/6/2026
Improper access control in fall detection for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to modify fall detection configuration.
AplazadaMedia (5.5)0.13%—Samsung Galaxy WatchAI6/8/202517/6/2026
Improper access control in SemSensorService for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to motion and body sensors.
AplazadaMedia (5.5)0.15%—Samsung Galaxy WatchAI3/12/202417/6/2026
Improper input validation in Settings prior to SMR Dec-2024 Release 1 allows local attackers to broadcast signal for discovering Bluetooth on Galaxy Watch.
ModificadaMedia (5.5)0.20%—Samsung Galaxy Watch Plugin9/9/202217/6/2026
Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission.
ModificadaMedia (6.2)0.20%—Samsung Galaxy Watch Plugin9/9/202217/6/2026
Improper Handling of Insufficient Permissions or Privileges vulnerability in Waterplugin prior to 2.2.11.22040751 allows attacker to access device IMEI and Serial number.
ModificadaMedia (6.5)0.23%—Samsung Galaxy Watch Plugin9/9/202217/6/2026
Improper restriction of broadcasting Intent in GalaxyStoreBridgePageLinker of?Waterplugin prior to version 2.2.11.22081151 leaks MAC address of the connected Bluetooth device.
ModificadaBaja (3.3)0.21%—Samsung Galaxy Watch 3 Plugin10/3/202217/6/2026
Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log
ModificadaBaja (3.3)0.21%—Samsung Galaxy Watch Plugin10/3/202217/6/2026
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log
ModificadaBaja (3.3)0.21%—Samsung Galaxy Watch 3 Plugin10/3/202217/6/2026
Information Exposure vulnerability in Galaxy S3 Plugin prior to version 2.2.03.22012751 allows attacker to access password information of connected WiFiAp in the log
ModificadaBaja (3.3)0.21%—Samsung Galaxy Watch Plugin10/3/202217/6/2026
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.220126741 allows attackers to access user information in log.
ModificadaAlta (8.8)0.44%—Samsung Galaxy Watch Active 2 FirmwareSamsung Galaxy Watch Active FirmwareSamsung Galaxy Watch FirmwareSamsung Galaxy Watch 3 Firmware+511/6/202117/6/2026
Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the user's bluetooth device without user awareness.
ModificadaMedia (5.5)0.24%—Samsung Galaxy Watch 3 Plugin11/6/202117/6/2026
Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
ModificadaMedia (5.5)0.24%—Samsung Galaxy Watch Plugin11/6/202117/6/2026
Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.