cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2018-16268,https://securityvulnerability.io/vulnerability/CVE-2018-16268,Improper D-Bus Security in Tizen Affects Samsung Devices,"The SoundServer/FocusServer system services in Tizen OS have a vulnerability that allows unprivileged processes to execute media-related commands due to misconfigured D-Bus security policies. This weakness permits unauthorized playback of sound files or DTMF tones, potentially compromising device functionality and user experience. Affected versions include Tizen OS prior to 5.0 M1 and certain Samsung Galaxy Gear models before build RE2, exposing users to security risks.",Linux,Tizen,4.3,MEDIUM,0.0009899999713525176,false,,false,false,false,,,false,false,,2020-01-22T12:51:16.000Z,0 CVE-2018-16267,https://securityvulnerability.io/vulnerability/CVE-2018-16267,Improper D-Bus Security Configuration in Tizen by Samsung,"The system-popup service in Tizen enables unprivileged processes to execute certain system commands, such as triggering the poweroff menu and displaying popups with customized text, due to incorrect D-Bus security policy configurations. This vulnerability impacts Tizen versions prior to 5.0 M1 and Tizen-based devices including several models in the Samsung Galaxy Gear series, rendering them susceptible to unauthorized system actions.",Linux,Tizen,8.1,HIGH,0.0012400000123307109,false,,false,false,false,,,false,false,,2020-01-22T12:49:24.000Z,0 CVE-2018-16265,https://securityvulnerability.io/vulnerability/CVE-2018-16265,Bluetooth Control Vulnerability in Tizen Operating System by Samsung,"The bt/bt_core system service in Tizen operating system is vulnerable due to incorrect D-Bus security policy configurations. This vulnerability enables unauthorized processes to create a user interface for the system, thereby gaining control over the Bluetooth pairing process. Affected versions include Tizen before 5.0 M1 and Tizen-based firmware on devices like Samsung Galaxy Gear series prior to build RE2. This flaw poses significant risks as it allows attackers to exploit Bluetooth functionalities without appropriate permissions.",Linux,Tizen,6.5,MEDIUM,0.0011099999537691474,false,,false,false,false,,,false,false,,2020-01-22T12:45:43.000Z,0 CVE-2018-16264,https://securityvulnerability.io/vulnerability/CVE-2018-16264,Bluetooth Control Vulnerability in Tizen by Samsung,"The BlueZ system service in Tizen is vulnerable, allowing unprivileged processes to gain partial control over Bluetooth functionalities or access sensitive information. This risk stems from improper configurations in D-Bus security policies. The vulnerability affects Tizen versions before 5.0 M1 and specific firmware builds of Tizen-based devices, including earlier models of the Samsung Galaxy Gear series.",Linux,Tizen,6.5,MEDIUM,0.0010499999625608325,false,,false,false,false,,,false,false,,2020-01-22T12:42:59.000Z,0 CVE-2018-16263,https://securityvulnerability.io/vulnerability/CVE-2018-16263,Improper D-Bus Security in Tizen Affects Samsung Gear Series,"The PulseAudio system service on Tizen devices is subject to a vulnerability that allows unprivileged processes to gain control over the A2DP MediaEndpoint. This issue stems from inadequate D-Bus security policy configurations, which could potentially lead to unauthorized access and control over audio streaming functionalities. This vulnerability impacts various versions of Tizen, specifically those prior to 5.0 M1, and affects the Samsung Galaxy Gear series devices that were released before build RE2.",Linux,Tizen,8.8,HIGH,0.0013200000394135714,false,,false,false,false,,,false,false,,2020-01-22T12:41:08.000Z,0 CVE-2018-16262,https://securityvulnerability.io/vulnerability/CVE-2018-16262,Improper D-Bus Security Configuration in Tizen Affects Package Management,"The pkgmgr system service in Tizen is vulnerable due to incorrect configurations in its D-Bus security policy, permitting an unprivileged process to execute critical package management operations. These include the ability to install, decrypt, and terminate other software packages. This flaw specifically impacts Tizen versions prior to 5.0 M1 and several Tizen-based firmware versions on devices like the Samsung Galaxy Gear series, allowing unauthorized actions that compromise the integrity and safety of the device's operating environment.",Linux,Tizen,8.8,HIGH,0.0013200000394135714,false,,false,false,false,,,false,false,,2020-01-22T12:20:33.000Z,0 CVE-2018-16266,https://securityvulnerability.io/vulnerability/CVE-2018-16266,D-Bus Security Flaw in Tizen's Enlightenment System Service,"The Enlightenment system service in Tizen has a security vulnerability that allows an unprivileged process to gain control over or capture windows. This issue arises due to improper configurations in the D-Bus security policy and affects Tizen versions prior to 5.0 M1, including Tizen-based firmware for the Samsung Galaxy Gear series before build RE2. Exploiting this vulnerability may enable unauthorized access and system manipulation, posing significant risks to user privacy and security.",Linux,Tizen,8.1,HIGH,0.0010499999625608325,false,,false,false,false,,,false,false,,2020-01-22T12:15:27.000Z,0