국산 SW 취약점
국산 제품의 CVE 는 NVD 에 분명히 있는데 한국어로 정리된 곳이 없습니다. 담당자가 자사 스택의 취약점을 찾으려면 영문 NVD 를 벤더명으로 하나씩 검색해야 합니다.
추적 벤더11곳
수집된 CVE277건
악용이 확인된 것1건CISA KEV 등재
공개 CVE 0건인 벤더3곳없다는 뜻이 아니라 공개되지 않았다는 뜻
삼성전자 — 수집 근거
Samsung
단말·가전
Samsung
200
삼성전자 관련 CVE
CVE-2019-16256악용 확인Some Samsung devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which mi…4.9%심각9.8
CVE-2019-6335A potential security vulnerability has been identified with Samsung Laser Printers. This vulnerabili…높음7.5
CVE-2019-11341On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture with…보통4.6
CVE-2019-16253The Text-to-speech Engine (aka SamsungTTS) application before 3.0.02.7 and 3.0.00.101 for Android al…높음7.8
CVE-2019-14783On Samsung mobile devices with N(7.x), and O(8.x), P(9.0) software, FotaAgent allows a malicious app…보통5.5
CVE-2018-20135Samsung Galaxy Apps before 4.4.01.7 allows modification of the hostname used for load balancing on i…높음8.1
CVE-2019-6742This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of …심각9.8
CVE-2019-6741This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of …심각9.3
CVE-2019-6740This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of …높음8.8
CVE-2019-12315Samsung SCX-824 printers allow a reflected Cross-Site-Scripting (XSS) vulnerability that can be trig…보통6.1
CVE-2019-12087Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprot…보통5.5
CVE-2019-7421XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/g…보통6.1
CVE-2019-7420XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.applica…보통6.1
CVE-2019-7419XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmen…보통6.1
CVE-2019-7418XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAler…보통6.1
CVE-2018-14745Buffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G9…높음8.8
CVE-2018-14856Buffer overflow in dhd_bus_flow_ring_create_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c i…보통6.3
CVE-2018-14855Buffer overflow in dhd_bus_flow_ring_flush_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c in…보통6.3
CVE-2018-14854Buffer overflow in dhd_bus_flow_ring_delete_response in drivers/net/wireless/bcmdhd4358/dhd_pcie.c i…보통6.3
CVE-2018-14853A NULL pointer dereference in dhd_prot_txdata_write_flush in drivers/net/wireless/bcmdhd4358/dhd_msg…보통4.3
CVE-2018-14852Out-of-bounds array access in dhd_rx_frame in drivers/net/wireless/bcmdhd4358/dhd_linux.c in the bcm…보통6.3
CVE-2018-12038An issue was discovered on Samsung 840 EVO devices. Vendor-specific commands may allow access to the…보통4.2
CVE-2018-12037An issue was discovered on Samsung 840 EVO and 850 EVO devices (only in "ATA high" mode, not vulnera…보통4.0
CVE-2018-17969Samsung SCX-6545X V2.00.03.01 03-23-2012 devices allows remote attackers to discover cleartext crede…심각9.8
CVE-2018-14318This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of …높음8.8
CVE-2018-11614This vulnerability allows remote attackers to escalate privileges on vulnerable installations of Sam…높음8.8
CVE-2018-10502This vulnerability allows local attackers to escalate privileges on vulnerable installations of Sams…높음7.8
CVE-2018-10501This vulnerability allows local attackers to escalate privileges on vulnerable installations of Sams…높음7.0
CVE-2018-10500This vulnerability allows local attackers to escalate privileges on vulnerable installations of Sams…높음7.0
CVE-2018-10499This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of S…높음7.0
CVE-2018-10498This vulnerability allows local attackers to disclose sensitive information on vulnerable installati…보통5.5
CVE-2018-10497This vulnerability allows local attackers to escalate privileges on vulnerable installations of Sams…높음7.8
CVE-2018-10496This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of …높음8.8
CVE-2018-3915An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields …높음8.2
CVE-2018-3914An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields …높음7.8
CVE-2018-3913An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields …보통6.7
CVE-2018-3906An exploitable stack-based buffer overflow vulnerability exists in the retrieval of a database field…높음8.2
CVE-2018-3894An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core…높음8.8
CVE-2018-3877An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …심각9.9
CVE-2018-3876An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …높음8.8
CVE-2018-3874An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …심각9.9
CVE-2018-3873An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …심각9.9
CVE-2018-3865An exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's …높음8.8
CVE-2018-3864An exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's …높음8.8
CVE-2018-3875An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …심각9.9
CVE-2018-3897An exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-cor…높음8.8
CVE-2018-3896An exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-cor…높음8.8
CVE-2018-3916An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields …높음7.8
CVE-2018-3908An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung Sm…높음7.5
CVE-2018-3895An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core…높음8.8
CVE-2018-3926An exploitable integer underflow vulnerability exists in the ZigBee firmware update routine of the h…보통5.5
CVE-2018-3927An exploitable information disclosure vulnerability exists in the crash handler of the hubCore binar…보통5.9
CVE-2018-3918An exploitable vulnerability exists in the remote servers of Samsung SmartThings Hub STH-ETH-250 - F…높음7.5
CVE-2018-3904An exploitable buffer overflow vulnerability exists in the camera 'update' feature of video-core's H…심각9.9
CVE-2018-3893An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core…높음8.8
CVE-2018-3909An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung Sm…높음8.6
CVE-2018-3907An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung Sm…심각10.0
CVE-2018-3911An exploitable HTTP header injection vulnerability exists in the remote servers of Samsung SmartThin…높음8.6
CVE-2018-3880An exploitable stack-based buffer overflow vulnerability exists in the database 'find-by-cameraId' f…심각9.9
CVE-2018-3872An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP …심각9.9
CVE-2018-3866An exploitable buffer overflow vulnerability exists in the samsungWifiScan handler of video-core's H…심각9.9
CVE-2018-3856An exploitable vulnerability exists in the smart cameras RTSP configuration of the Samsung SmartThin…심각9.9
CVE-2018-3912On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process…높음7.8
CVE-2018-3925An exploitable buffer overflow vulnerability exists in the remote video-host communication of video-…심각9.9
CVE-2018-3919An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields …심각9.9
CVE-2018-3917On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process…심각9.9
CVE-2018-3905An exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's H…심각9.9
CVE-2018-3903On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process…심각9.9
CVE-2018-3902An exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's …심각9.9
CVE-2018-3879An exploitable JSON injection vulnerability exists in the credentials handler of video-core's HTTP s…높음8.8
CVE-2018-3878Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core'…심각9.9
CVE-2018-3867An exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback noti…심각9.9
CVE-2018-3863On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process…심각9.9
CVE-2018-14908Samsung Syncthru Web Service V4.05.61 is vulnerable to CSRF on every request, as demonstrated by sws…높음8.8
CVE-2018-14904Samsung Syncthru Web Service V4.05.61 is vulnerable to Multiple unauthenticated XSS attacks on sever…보통6.1
CVE-2018-11689Web Viewer for Hanwha DVR 2.17 and Smart Viewer in Samsung Web Viewer for Samsung DVR are vulnerable…보통6.1
CVE-2018-10751A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when proc…보통5.3
CVE-2018-9143On Samsung mobile devices with M(6.0) and N(7.x) software, a heap overflow in the sensorhub binder s…심각9.8
CVE-2018-9142On Samsung mobile devices with N(7.x) software, attackers can install an arbitrary APK in the Secure…높음7.0
CVE-2018-9141On Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software, Gallery allows remote attackers …높음7.8
CVE-2018-9140On Samsung mobile devices with M(6.0) software, the Email application allows XSS via an event attrib…보통6.1
CVE-2018-9139On Samsung mobile devices with N(7.x) software, a buffer overflow in the vision service allows code …심각9.8
CVE-2018-6019Samsung Display Solutions App before 3.02 for Android allows man-in-the-middle attackers to spoof B2…보통5.9
CVE-2017-10963In Knox SDS IAM (Identity Access Management) and EMM (Enterprise Mobility Management) 16.11 on Samsu…보통5.9
CVE-2017-17860In Samsung Gear products, Bluetooth link key is updated to the different key which is same with atta…보통5.7
CVE-2018-5210On Samsung mobile devices with N(7.x) software and Exynos chipsets, attackers can conduct a Trustlet…높음8.1
CVE-2017-18020On Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software and Exynos chipsets, attackers ca…높음8.4
CVE-2015-7889The SecEmailComposer/EmailComposer application in the Samsung S6 Edge before the October 2015 MR use…보통5.5
CVE-2017-17859Samsung Internet Browser 6.2.01.12 allows remote attackers to bypass the Same Origin Policy, and con…보통6.1
CVE-2017-17692Samsung Internet Browser 5.4.02.3 allows remote attackers to bypass the Same Origin Policy and obtai…높음7.5
CVE-2015-7268Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives,…보통4.2
CVE-2015-7267Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives,…보통4.2
CVE-2017-16524Web Viewer 1.0.0.193 on Samsung SRN-1670D devices suffers from an Unrestricted file upload vulnerabi…높음8.8
CVE-2014-0997WiFiMonitor in Android 4.4.4 as used in the Nexus 5 and 4, Android 4.2.2 as used in the LG D806, And…높음7.5
CVE-2017-14262On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via c…높음8.1
CVE-2015-7896LibQJpeg in the Samsung Galaxy S6 before the October 2015 MR allows remote attackers to cause a deni…보통6.5
CVE-2015-1801The samsung_extdisp driver in the Samsung S4 (GT-I9500) I9500XXUEMK8 kernel 3.4 and earlier allows a…심각9.8
CVE-2015-1800The samsung_extdisp driver in the Samsung S4 (GT-I9500) I9500XXUEMK8 kernel 3.4 and earlier allows a…높음7.5
CVE-2015-7894The DCMProvider service in Samsung LibQjpeg on a Samsung SM-G925V device running build number LRX22G…높음8.8
CVE-2015-7891Race condition in the ioctl implementation in the Samsung Graphics 2D driver (aka /dev/fimg2d) in Sa…높음7.0
CVE-2015-7898Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process cr…보통5.5
CVE-2015-7895Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process cr…보통5.5
CVE-2017-3218Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to …높음8.8
CVE-2015-7888Directory traversal vulnerability in the WifiHs20UtilityService on the Samsung S6 Edge LRX22G.G925VV…높음7.5
CVE-2015-5473Multiple directory traversal vulnerabilities in Samsung SyncThru 6 before 1.0 allow remote attackers…심각9.8
CVE-2017-7978Samsung Android devices with L(5.0/5.1), M(6.0), and N(7.x) software allow attackers to obtain sensi…높음7.5
CVE-2016-4032Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I…보통4.6
CVE-2016-4031Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I…보통6.8
CVE-2016-4030Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I…보통6.8
CVE-2016-2567secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F bu…낮음3.3
CVE-2016-2566Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-…심각9.8
CVE-2016-2565Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to read se…낮음3.3
CVE-2016-2036The getURL function in drivers/secfilter/urlparser.c in secfilter in the Samsung kernel for Android …보통5.5
CVE-2015-8780Samsung wssyncmlnps before 2015-10-31 allows directory traversal in a Kies restore, aka ZipFury.보통6.4
CVE-2015-7893SecEmailUI in Samsung Galaxy S6 does not sanitize HTML email content, allows remote attackers to exe…높음8.8
CVE-2015-0864Samsung Account (AKA com.osp.app.signin) before 1.6.0069 and 2.x before 2.1.0069 allows man-in-the-m…높음8.0
CVE-2015-0863GALAXY Apps (aka Samsung Apps, Samsung Updates, or com.sec.android.app.samsungapps) before 14120405.…높음8.0
CVE-2015-5729The Soft Access Point (AP) feature in Samsung Smart TVs X10P, X12, X14H, X14J, and NT14U and Xpress …심각9.8
CVE-2017-5538The kbase_dispatch function in arm/t7xx/r5p0/mali_kbase_core_linux.c in the GPU driver on Samsung de…심각9.8
CVE-2016-4547Samsung devices with Android KK(4.4), L(5.0/5.1), or M(6.0) allow attackers to cause a denial of ser…높음7.5
CVE-2016-4546Samsung devices with Android KK(4.4) or L(5.0/5.1) allow local users to cause a denial of service (I…보통5.5
CVE-2016-4038Array index error in the msm_sensor_config function in kernel/SM-G9008V_CHN_KK_Opensource/Kernel/dri…높음7.8
CVE-2016-6604NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows at…심각9.8
CVE-2016-3996ClipboardDataMgr in Samsung KNOX 1.0.0 and 2.3.0 does not properly check the caller, which allows lo…보통5.5
CVE-2016-1920Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-i…보통5.5
CVE-2016-1919Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local user…보통4.7
CVE-2016-9279Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx,…높음7.5
CVE-2016-9278The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local u…보통5.5
CVE-2016-6527The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0)…높음7.8
CVE-2016-6526The SpamCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) …높음7.8
CVE-2017-5351Samsung Note devices with KK(4.4), L(5.0/5.1), and M(6.0) software allow attackers to crash the syst…높음7.5
CVE-2017-5350Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allow attackers to crash systemUI …높음7.5
CVE-2017-5217Installing a zero-permission Android application on certain Samsung Android devices with KK(4.4), L(…보통5.5
CVE-2016-6910The non-existent notification listener vulnerability was introduced in the initial Android 5.0.2 bui…보통5.5
CVE-2016-9967Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note …심각9.8
CVE-2016-9966Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note …심각9.8
CVE-2016-9965Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note …심각9.8
CVE-2016-9567The mDNIe system service on Samsung Mobile S7 devices with M(6.0) software does not properly restric…보통5.5
CVE-2016-9277Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to c…높음7.5
CVE-2016-7160A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activiti…높음7.5
CVE-2016-7991On Samsung Galaxy S4 through S7 devices, the "omacp" app ignores security information embedded in th…높음7.5
CVE-2016-7990On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so whe…심각9.8
CVE-2016-7989On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message se…높음7.5
CVE-2016-7988On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible…높음7.5
CVE-2015-8281Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows attackers to bypass filesystem encryption v…높음7.5
CVE-2015-8280Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to discover credentials by…높음7.5
CVE-2015-8279Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files vi…높음8.6
CVE-2015-7897The media scanning functionality in the face recognition library in android.media.process in Samsung…높음7.5
CVE-2015-8040The rtsp_getdlsendtime method in the CNC_Ctrl control in Samsung SmartViewer allows remote attackers…보통6.8
CVE-2015-8039Samsung SmartViewer allows remote attackers to execute arbitrary code via unspecified vectors to the…보통6.8
NVD 키워드 검색 결과입니다. 검색어와 회사의 연결은 사람이 손으로 채웠고, 추론하지 않았습니다.
공개 CVE 를 찾지 못한 벤더
가비아넥슨더존비즈온
건수가 곧 위험도가 아닙니다. 삼성전자가 가장 많은 것은 제품이 더 위험해서가 아니라 갤럭시 단말 월간 보안 공지가 CVE 를 대량 발행하기 때문입니다. 또한 삼성전자와 삼성SDS 는 다른 회사이고, LG 는 전자·유플러스·CNS 가 각각 다릅니다 — 회사와 검색어의 연결은 추론하지 않고 사람이 확인해 채웁니다.