SmartThings
Samsung Mobile · 11 CVEs
Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows att…
Oct 7, 2022
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows att…
Oct 7, 2022
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows att…
Oct 7, 2022
Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to…
Oct 7, 2022
Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows att…
Oct 7, 2022
Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attack…
Oct 7, 2022
Improper access control vulnerability in ContentsSharingActivity.java SmartThings prior to version 1.7.89.0 allows atta…
Oct 7, 2022
Improper access control vulnerability in WifiSetupLaunchHelper in SmartThings prior to version 1.7.89.25 allows attacke…
Oct 7, 2022
Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abu…
Nov 5, 2021
Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information…
Jun 11, 2021
Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of serv…
Apr 9, 2021
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2022-39871 | Improper access control vulnerability cloudNotificationManager.java in SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information v… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39870 | Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information v… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39869 | Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information v… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39868 | Improper access control vulnerability in GedSamsungAccount.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implic… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39867 | Improper access control vulnerability in cloudNotificationManager.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information v… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39866 | Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39865 | Improper access control vulnerability in ContentsSharingActivity.java SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information vi… | HIGH | 0.41% | Oct 7, 2022 |
| CVE-2022-39864 | Improper access control vulnerability in WifiSetupLaunchHelper in SmartThings prior to version 1.7.89.25 allows attackers to access sensitive information via i… | HIGH | 0.39% | Oct 7, 2022 |
| CVE-2021-25508 | Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation. | CRITICAL | 0.83% | Nov 5, 2021 |
| CVE-2021-25404 | Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log. | LOW | 0.24% | Jun 11, 2021 |
| CVE-2021-25378 | Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of service. | MEDIUM | 0.97% | Apr 9, 2021 |
Showing 1 to 11 of 11 CVEs