Product
samsung account
31 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-20994
CVE-2026-21264
CVE-2025-58487
CVE-2025-58486
CVE-2025-21076
CVE-2023-21481
CVE-2025-21396
CVE-2024-20841
CVE-2023-42551
CVE-2023-42550
CVE-2023-42549
CVE-2023-42548
CVE-2023-42547
CVE-2023-42546
CVE-2023-42540
CVE-2022-39875
CVE-2022-39874
CVE-2022-39863
CVE-2022-30743
CVE-2022-30739
CVE-2022-30737
CVE-2022-30736
CVE-2022-30735
CVE-2022-30734
CVE-2022-30733
CVE-2022-30732
CVE-2022-25825
CVE-2021-25403
CVE-2021-25381
CVE-2021-25351
CVE-2021-25350
< 15.5.01.1
URL redirection in Samsung Account prior to version 15.5.01.1 allows local attackers to potentially get access token.
all versions
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Account allows an unauthorized a
< 15.5.01.1
Improper authorization in Samsung Account prior to version 15.5.01.1 allows local attacker to launch arbitrary activity with Samsu
< 15.5.01.1
Improper input validation in Samsung Account prior to version 15.5.01.1 allows local attacker to execute arbitrary script.
< 15.5.00.18
Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers
< 14.1.0.0
Improper URL input validation vulnerability in Samsung Account application prior to version 14.1.0.0 allows remote attackers to ge
all versions
Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network.
< 14.8.00.3
Improper Handling of Insufficient Privileges in Samsung Account prior to version 14.8.00.3 allows local attackers to access data.
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version 14.5.00.7
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5.00.7 allo
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior to versio
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior to versio
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prior to versi
< 14.5.00.7
Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account prior to ver
< 14.5.01.1
Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive informati
< 13.5.01.3
Improper component protection vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout.
< 13.5.01.3
Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows attackers to unauthorized logout
< 13.5.01.3
Intent redirection vulnerability in Samsung Account prior to version 13.5.01.3 allows attackers to access content providers withou
< 13.2.00.6
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and
< 13.2.00.6
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get an user email or phone n
< 13.2.00.6
Implicit Intent hijacking vulnerability in Samsung Account prior to version 13.2.00.6 allows attackers to get email ID.
< 13.2.00.6
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the data of contact and
< 13.2.00.6
Improper privilege management vulnerability in Samsung Account prior to 13.2.00.6 allows attackers to get the access_token without
< 13.2.00.6
Sensitive information exposure in Sign-out log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email
< 13.2.00.6
Sensitive information exposure in Sign-in log in Samsung Account prior to version 13.2.00.6 allows attackers to get an user email
< 13.2.00.6
Exposure of Sensitive Information vulnerability in Samsung Account prior to version 13.2.00.6 allows attacker to access sensitive
< 13.1.0.1
Improper access control vulnerability in Samsung Account prior to version 13.1.0.1 allows attackers to access to the authcode for
< 10.8.0.4
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android
all versions
Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) an
< 10.7.07
Improper Access Control in EmailValidationView in Samsung Account prior to version 10.7.0.7 and 12.1.1.3 allows physically proxima
< 12.1.1.3
Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically proximate attackers to access us