Known Vulnerabilities for Syncthru Web Service by Samsung
Listed below are 8 of the newest known vulnerabilities associated with "Syncthru Web Service" by "Samsung".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-42913 | The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext... | 7.5 - HIGH | 2021-12-20 | 2023-11-07 |
| CVE-2021-35309 | An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MIT... | 7.5 - HIGH | 2023-08-22 | 2023-08-28 |
| CVE-2019-7421 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in mult... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7420 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/networki... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7419 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple parame... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7418 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple parame... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2018-14908 | Samsung Syncthru Web Service V4.05.61 is vulnerable to CSRF on every request, as demonstrated by sws.application/printinforma... | 8.8 - HIGH | 2018-08-03 | 2018-09-27 |
| CVE-2018-14904 | Samsung Syncthru Web Service V4.05.61 is vulnerable to Multiple unauthenticated XSS attacks on several parameters, as demonst... | 6.1 - MEDIUM | 2018-08-03 | 2018-09-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Samsung | Syncthru Web Service | 4.05.61 | All | All | All |