Known Vulnerabilities for Syncthru Web Service by Samsung
Listed below are 8 of the newest known vulnerabilities associated with "Syncthru Web Service" by "Samsung".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-42913 json | The SyncThru Web Service on Samsung SCX-6x55X printers allows an attacker to gain access to a list of SMB users and cleartext... | 7.5 - HIGH | 2021-12-20 | 2023-11-07 |
| CVE-2021-35309 json | An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MIT... | 7.5 - HIGH | 2023-08-22 | 2023-08-28 |
| CVE-2019-7421 json | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in mult... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7420 json | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/networki... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7419 json | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple parame... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2019-7418 json | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple parame... | 6.1 - MEDIUM | 2019-03-21 | 2019-03-25 |
| CVE-2018-14908 json | Samsung Syncthru Web Service V4.05.61 is vulnerable to CSRF on every request, as demonstrated by sws.application/printinforma... | 8.8 - HIGH | 2018-08-03 | 2018-09-27 |
| CVE-2018-14904 json | Samsung Syncthru Web Service V4.05.61 is vulnerable to Multiple unauthenticated XSS attacks on several parameters, as demonst... | 6.1 - MEDIUM | 2018-08-03 | 2018-09-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Samsung | Syncthru Web Service | 4.05.61 |