cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-36836,https://securityvulnerability.io/vulnerability/CVE-2022-36836,Unprotected Provider Vulnerability in Samsung's Charm Product,"The unprotected provider vulnerability in Samsung's Charm product allows unauthorized attackers to read connection states without the necessary permissions. This could lead to significant security issues, exposing sensitive information and data to malicious actors. Users of Charm versions prior to 1.2.3 are particularly at risk and are urged to upgrade to the latest version to mitigate that risk.",Samsung,Charm By Samsung,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-08-05T15:17:04.000Z,0 CVE-2022-36830,https://securityvulnerability.io/vulnerability/CVE-2022-36830,PendingIntent Hijacking Vulnerability in Samsung's Charm,"The vulnerability in Samsung's Charm application arises from improper handling of PendingIntent in the cancelAlarmManager function. This flaw allows local attackers to exploit implicit intents, enabling unauthorized access to files on the device without the necessary permissions. As a result, sensitive data may be exposed, leading to potential privacy breaches for users of the app. It is essential for users to ensure they are running the latest version (1.2.3 or higher) to mitigate the risk associated with this vulnerability.",Samsung,Charm By Samsung,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-08-05T15:16:49.000Z,0 CVE-2022-36829,https://securityvulnerability.io/vulnerability/CVE-2022-36829,PendingIntent Hijacking Vulnerability in Samsung Charm Application,"A vulnerability in the Samsung Charm application prior to version 1.2.3 allows local attackers to exploit the releaseAlarm method, resulting in unauthorized access to files through implicit intent. This issue could enable malicious users to bypass security measures and gain access to sensitive data without proper permissions.",Samsung,Charm By Samsung,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-08-05T15:16:35.000Z,0 CVE-2022-33734,https://securityvulnerability.io/vulnerability/CVE-2022-33734,Sensitive Information Exposure in Samsung Bluetooth Connectivity,"A vulnerability present in the Charm Bluetooth service by Samsung allows attackers to access sensitive connection details without authorization. This flaw occurs in the onCharacteristicChanged function and affects versions earlier than 1.2.3, potentially leading to unauthorized data leaks that could compromise user privacy and security.",Samsung,Charm By Samsung,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-08-05T15:16:21.000Z,0 CVE-2022-33733,https://securityvulnerability.io/vulnerability/CVE-2022-33733,Sensitive Information Exposure in Samsung's Charm Bluetooth Product,"The vulnerability in Samsung's Charm Bluetooth product prior to version 1.2.3 allows attackers to access sensitive Bluetooth connection information without appropriate permissions, posing a significant risk to user privacy and data integrity.",Samsung,Charm By Samsung,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-08-05T15:16:07.000Z,0