CVE-2025-21019
- EPSS 0.02%
- Published 06.08.2025 04:23:35
- Last modified 15.08.2025 16:01:18
Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this vulnerability.
CVE-2024-34597
- EPSS 0.06%
- Published 02.07.2024 10:15:08
- Last modified 21.11.2024 09:19:02
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.
CVE-2023-42539
- EPSS 0.09%
- Published 07.11.2023 08:15:19
- Last modified 21.11.2024 08:22:44
PendingIntent hijacking vulnerability in ChallengeNotificationManager in Samsung Health prior to version 6.25 allows local attackers to access data.
CVE-2023-30734
- EPSS 0.09%
- Published 04.10.2023 04:15:13
- Last modified 21.11.2024 08:00:47
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
CVE-2023-30737
- EPSS 0.13%
- Published 04.10.2023 04:15:13
- Last modified 21.11.2024 08:00:48
Improper access control vulnerability in Samsung Health prior to version 6.24.3.007 allows attackers to access sensitive information via implicit intent.
CVE-2023-30723
- EPSS 0.22%
- Published 06.09.2023 04:15:15
- Last modified 21.11.2024 08:00:46
Improper input validation vulnerability in Samsung Health prior to version 6.24.2.011 allows attackers to write arbitrary file with Samsung Health privilege.
CVE-2022-22283
- EPSS 0.06%
- Published 10.01.2022 14:12:43
- Last modified 21.11.2024 06:46:33
Improper session management vulnerability in Samsung Health prior to 6.20.1.005 prevents logging out from Samsung Health App.
CVE-2021-25506
- EPSS 0.06%
- Published 05.11.2021 03:15:11
- Last modified 21.11.2024 05:55:07
Non-existent provider in Samsung Health prior to 6.19.1.0001 allows attacker to access it via malicious content provider or lead to denial of service.
CVE-2021-25425
- EPSS 0.28%
- Published 11.06.2021 15:15:11
- Last modified 21.11.2024 05:54:57
Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exported component.
CVE-2021-25401
- EPSS 0.06%
- Published 11.06.2021 15:15:09
- Last modified 21.11.2024 05:54:55
Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action.