CWE-925 · 19 kayıt
Improper Verification of Intent by Broadcast Receiver
Bu sınıftaki CVE’ler
19 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2024-10576İstismar yok | Unauthorized factory reset of Infinix devicesinfinix mobile · com.transsion.agingfunction · CWE-925 | Kritik9,4 | — | %0,2 | 4 Ara 2024 |
30İzleyin | CVE-2023-42543İstismar yok | Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arbsamsung · bixby voice · CWE-925 | Yüksek7,5 | — | %0,5 | 7 Kas 2023 |
27İzleyin | CVE-2026-20988İstismar yok | Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local attacker to launch arbitrary samsung · android · CWE-925 | Orta6,8 | — | %0,1 | 16 Mar 2026 |
22İzleyin | CVE-2024-20870İstismar yok | Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows local attackers to writsamsung · galaxy store · CWE-925 | Orta5,5 | — | %0,1 | 7 May 2024 |
22İzleyin | CVE-2025-20951İstismar yok | Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.90.7 allows local attackers to writsamsung · galaxy store · CWE-925 | Orta5,5 | — | %0,1 | 8 Nis 2025 |
22İzleyin | CVE-2025-20972İstismar yok | Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flosamsung · flow · CWE-925 | Orta5,5 | — | %0,1 | 7 May 2025 |
22İzleyin | CVE-2023-44126İstismar yok | Call management - Implicit intents disclose telephony data such as phone numbers, call states, contactslg · v60 thin q 5g · CWE-925 | Orta5,5 | — | %0,1 | 27 Eyl 2023 |
21İzleyin | CVE-2026-33173İstismar yok | Rails Active Storage has possible content type bypass via metadata in direct uploadsrubyonrails · rails · CWE-925 | Orta5,3 | — | %0,4 | 23 Mar 2026 |
21İzleyin | CVE-2024-34601İstismar yok | Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launcsamsung · galaxy store · CWE-925 | Orta5,3 | — | %0,1 | 2 Tem 2024 |
20İzleyin | CVE-2024-20853İstismar yok | Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attackers to write arbitrarsamsung · galaxy themes · CWE-925 | Orta5,1 | — | %0,2 | 1 Nis 2024 |
20İzleyin | CVE-2026-21106İstismar yok | Improper verification of intent by broadcast receiver in Samsung Cloud Assistant prior to version 9.0.5 allows local attackers to disable ensamsung mobile · samsung cloud assistant · CWE-925 | Orta5,1 | — | %0,1 | 9 Eyl 2026 |
17İzleyin | CVE-2025-20942İstismar yok | Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAIsamsung · android · CWE-925 | Orta4,4 | — | %0,1 | 8 Nis 2025 |
17İzleyin | CVE-2025-20958İstismar yok | Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoWsamsung · android · CWE-925 | Orta4,4 | — | %0,1 | 7 May 2025 |
17İzleyin | CVE-2025-21027İstismar yok | Improper verification of intent by broadcast receiver in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to temporarily disamsung · android · CWE-925 | Orta4,4 | — | %0,1 | 3 Eyl 2025 |
13İzleyin | CVE-2024-20852İstismar yok | Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to accesamsung · smartthings · CWE-925 | Düşük3,3 | — | %0,1 | 1 Nis 2024 |
13İzleyin | CVE-2024-34600İstismar yok | Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copysamsung · flow · CWE-925 | Düşük3,3 | — | %0,1 | 2 Tem 2024 |
13İzleyin | CVE-2025-21039İstismar yok | Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modifysamsung · sassistant · CWE-925 | Düşük3,3 | — | %0,1 | 3 Eyl 2025 |
13İzleyin | CVE-2025-21040İstismar yok | Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerarsamsung · sassistant · CWE-925 | Düşük3,3 | — | %0,1 | 3 Eyl 2025 |
13İzleyin | CVE-2025-21038İstismar yok | Improper verification of intent by SamsungExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modifsamsung · sassistant · CWE-925 | Düşük3,3 | — | %0,1 | 3 Eyl 2025 |
- CVE-2024-1057637İzleyin
Unauthorized factory reset of Infinix devices
KritikCVSS 9,4İstismar yokEPSS %0infinix mobile · com.transsion.agingfunction4 Ara 2024
- CVE-2023-4254330İzleyin
Improper verification of intent by broadcast receiver vulnerability in Bixby Voice prior to version 3.3.35.12 allows attackers to access arb
YüksekCVSS 7,5İstismar yokEPSS %0samsung · bixby voice7 Kas 2023
- CVE-2026-2098827İzleyin
Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local attacker to launch arbitrary
OrtaCVSS 6,8İstismar yokEPSS %0samsung · android16 Mar 2026
- CVE-2024-2087022İzleyin
Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows local attackers to writ
OrtaCVSS 5,5İstismar yokEPSS %0samsung · galaxy store7 May 2024
- CVE-2025-2095122İzleyin
Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.90.7 allows local attackers to writ
OrtaCVSS 5,5İstismar yokEPSS %0samsung · galaxy store8 Nis 2025
- CVE-2025-2097222İzleyin
Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flo
OrtaCVSS 5,5İstismar yokEPSS %0samsung · flow7 May 2025
- CVE-2023-4412622İzleyin
Call management - Implicit intents disclose telephony data such as phone numbers, call states, contacts
OrtaCVSS 5,5İstismar yokEPSS %0lg · v60 thin q 5g27 Eyl 2023
- CVE-2026-3317321İzleyin
Rails Active Storage has possible content type bypass via metadata in direct uploads
OrtaCVSS 5,3İstismar yokEPSS %0rubyonrails · rails23 Mar 2026
- CVE-2024-3460121İzleyin
Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows local attackers to launc
OrtaCVSS 5,3İstismar yokEPSS %0samsung · galaxy store2 Tem 2024
- CVE-2024-2085320İzleyin
Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attackers to write arbitrar
OrtaCVSS 5,1İstismar yokEPSS %0samsung · galaxy themes1 Nis 2024
- CVE-2026-2110620İzleyin
Improper verification of intent by broadcast receiver in Samsung Cloud Assistant prior to version 9.0.5 allows local attackers to disable en
OrtaCVSS 5,1İstismar yokEPSS %0samsung mobile · samsung cloud assistant9 Eyl 2026
- CVE-2025-2094217İzleyin
Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAI
OrtaCVSS 4,4İstismar yokEPSS %0samsung · android8 Nis 2025
- CVE-2025-2095817İzleyin
Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoW
OrtaCVSS 4,4İstismar yokEPSS %0samsung · android7 May 2025
- CVE-2025-2102717İzleyin
Improper verification of intent by broadcast receiver in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to temporarily di
OrtaCVSS 4,4İstismar yokEPSS %0samsung · android3 Eyl 2025
- CVE-2024-2085213İzleyin
Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to acce
DüşükCVSS 3,3İstismar yokEPSS %0samsung · smartthings1 Nis 2024
- CVE-2024-3460013İzleyin
Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copy
DüşükCVSS 3,3İstismar yokEPSS %0samsung · flow2 Tem 2024
- CVE-2025-2103913İzleyin
Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify
DüşükCVSS 3,3İstismar yokEPSS %0samsung · sassistant3 Eyl 2025
- CVE-2025-2104013İzleyin
Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modify itinerar
DüşükCVSS 3,3İstismar yokEPSS %0samsung · sassistant3 Eyl 2025
- CVE-2025-2103813İzleyin
Improper verification of intent by SamsungExceptionalBroadcastReceiver in S Assistant prior to version 9.3.2 allows local attackers to modif
DüşükCVSS 3,3İstismar yokEPSS %0samsung · sassistant3 Eyl 2025