Skip to content
Noroxi

CWE-925 · 19 records

Improper Verification of Intent by Broadcast Receiver

CVEs in this class

19 records

  • Unauthorized factory reset of Infinix devices

    CriticalCVSS 9.4No exploitEPSS 0%

    infinix mobile · com.transsion.agingfunctionDec 4, 2024

  • Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arb

    HighCVSS 7.5No exploitEPSS 0%

    samsung · bixby voiceNov 7, 2023

  • Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local attacker to launch arbitrary

    MediumCVSS 6.8No exploitEPSS 0%

    samsung · androidMar 16, 2026

  • Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows local attackers to writ

    MediumCVSS 5.5No exploitEPSS 0%

    samsung · galaxy storeMay 7, 2024

  • Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.90.7 allows local attackers to writ

    MediumCVSS 5.5No exploitEPSS 0%

    samsung · galaxy storeApr 8, 2025

  • Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flo

    MediumCVSS 5.5No exploitEPSS 0%

    samsung · flowMay 7, 2025

  • Call management - Implicit intents disclose telephony data such as phone numbers, call states, contacts

    MediumCVSS 5.5No exploitEPSS 0%

    lg · v60 thin q 5gSep 27, 2023

  • Rails Active Storage has possible content type bypass via metadata in direct uploads

    MediumCVSS 5.3No exploitEPSS 0%

    rubyonrails · railsMar 23, 2026

  • Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launc

    MediumCVSS 5.3No exploitEPSS 0%

    samsung · galaxy storeJul 2, 2024

  • Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attackers to write arbitrar

    MediumCVSS 5.1No exploitEPSS 0%

    samsung · galaxy themesApr 1, 2024

  • Improper verification of intent by broadcast receiver in Samsung Cloud Assistant prior to version 9.0.5 allows local attackers to disable en

    MediumCVSS 5.1No exploitEPSS 0%

    samsung mobile · samsung cloud assistantSep 9, 2026

  • Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAI

    MediumCVSS 4.4No exploitEPSS 0%

    samsung · androidApr 8, 2025

  • Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoW

    MediumCVSS 4.4No exploitEPSS 0%

    samsung · androidMay 7, 2025

  • Improper verification of intent by broadcast receiver in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to temporarily di

    MediumCVSS 4.4No exploitEPSS 0%

    samsung · androidSep 3, 2025

  • Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to acce

    LowCVSS 3.3No exploitEPSS 0%

    samsung · smartthingsApr 1, 2024

  • Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copy

    LowCVSS 3.3No exploitEPSS 0%

    samsung · flowJul 2, 2024

  • Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerar

    LowCVSS 3.3No exploitEPSS 0%

    samsung · sassistantSep 3, 2025

  • Improper verification of intent by SamsungExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modif

    LowCVSS 3.3No exploitEPSS 0%

    samsung · sassistantSep 3, 2025

  • Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify

    LowCVSS 3.3No exploitEPSS 0%

    samsung · sassistantSep 3, 2025

All vulnerability classes