Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
20 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.9) | 0.14% | — | Google MessagesAIGoogle Wear OSAI | 27/10/2025 | 17/6/2026 | On Wear OS devices, when Google Messages is configured as the default SMS/MMS/RCS application, the handling of ACTION_SENDTO intents utilizing the sms:, smsto:, mms:, and mmsto: Uniform Resource Identifier (URI) schemes is incorrectly implemented. Due to this misconfiguration, an attacker capable of invoking an… | |
| Analizada | Media (5.5) | 0.13% | — | Samsung Wear OS | 10/10/2025 | 17/6/2026 | Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. | |
| Analizada | Media (5.5) | 0.09% | — | Samsung Wear OS | 8/7/2025 | 17/6/2026 | Improper verification of intent by broadcast receiver in System UI for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to power off the device. | |
| Analizada | Baja (3.3) | 0.13% | — | Samsung Wear OS | 8/7/2025 | 17/6/2026 | Improper access control in SamsungAccount for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to access phone number. | |
| Analizada | Media (5.5) | 0.13% | — | Samsung Wear OS | 8/7/2025 | 17/6/2026 | Incorrect default permission in Framework for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to reset some configuration of Galaxy Watch. | |
| Analizada | Media (5.5) | 0.14% | — | Samsung Wear OS | 4/6/2025 | 17/6/2026 | Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take screenshots. | |
| Analizada | Media (6.2) | 0.14% | — | Samsung Wear OS | 4/6/2025 | 17/6/2026 | Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to access data in Samsung Cloud for Galaxy Watch. | |
| Analizada | Media (4.3) | 0.19% | — | Samsung Wear OS | 7/5/2025 | 17/6/2026 | Improper export of android application components in Settings in Galaxy Watch prior to SMR May-2025 Release 1 allows physical attackers to access developer settings. | |
| Analizada | Alta (8.8) | 0.27% | — | Samsung Wear OS | 8/4/2025 | 17/6/2026 | Improper handling of exceptional conditions in pairing specific bluetooth devices in Galaxy Watch Bluetooth pairing prior to SMR Apr-2025 Release 1 allows local attackers to pair with specific bluetooth devices without user interaction. | |
| Analizada | Media (6.2) | 0.16% | — | Samsung Wear OS | 8/4/2025 | 17/6/2026 | Improper access control in Galaxy Watch prior to SMR Apr-2025 Release 1 allows local attackers to access sensitive information of Galaxy watch. | |
| Analizada | Media (5.4) | 0.19% | — | Samsung Wear OS | 8/4/2025 | 17/6/2026 | Improper authorization in wireless download protocol in Galaxy Watch prior to SMR Apr-2025 Release 1 allows physical attackers to update device unique identifier of Watch devices. | |
| Analizada | Media (6.2) | 0.15% | — | Samsung Wear OS | 6/3/2025 | 17/6/2026 | Incorrect default permission in DiagMonAgent prior to SMR Mar-2025 Release 1 allows local attackers to access data within Galaxy Watch. | |
| Analizada | Media (4.4) | 0.14% | — | Samsung Wear OS | 6/3/2025 | 17/6/2026 | Improper access control in sem_wifi service prior to SMR Mar-2025 Release 1 allows privileged local attackers to update MAC address of Galaxy Watch. | |
| Analizada | Media (6.2) | 0.15% | — | Samsung Wear OS | 6/3/2025 | 17/6/2026 | Incorrect default permission in Galaxy Watch Gallery prior to SMR Mar-2025 Release 1 allows local attackers to access data in Galaxy Watch Gallery. | |
| Analizada | Media (5.5) | 0.13% | — | Samsung Wear OS | 7/8/2024 | 17/6/2026 | Improper access control in Galaxy Watch prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive information of Galaxy watch. | |
| Modificada | Baja (3.3) | 0.43% | — | Samsung Wear OS | 10/3/2022 | 17/6/2026 | An Improper access control vulnerability in StRetailModeReceiver in Wear OS 3.0 prior to Firmware update MAR-2022 Release allows untrusted applications to reset default app settings without a proper permission | |
| Modificada | Baja (3.3) | 0.44% | — | Samsung Wear OS | 11/2/2022 | 17/6/2026 | Unprotected component vulnerability in StTheaterModeDurationAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to disable theater mode without a proper permission. | |
| Modificada | Baja (3.3) | 0.44% | — | Samsung Wear OS | 11/2/2022 | 17/6/2026 | Unprotected component vulnerability in StTheaterModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to enable bedtime mode without a proper permission. | |
| Modificada | Baja (3.3) | 0.44% | — | Samsung Wear OS | 11/2/2022 | 17/6/2026 | Unprotected component vulnerability in StBedtimeModeAlarmReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission. | |
| Modificada | Baja (3.3) | 0.45% | — | Samsung Wear OS | 11/2/2022 | 17/6/2026 | An Improper access control vulnerability in StBedtimeModeReceiver in Wear OS 3.0 prior to Firmware update Feb-2022 Release allows untrusted applications to change bedtime mode without a proper permission. |