CVE-2025-54448
- EPSS 0.07%
- Published 23.07.2025 05:31:03
- Last modified 28.07.2025 16:58:02
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54453
- EPSS 0.1%
- Published 23.07.2025 05:30:35
- Last modified 28.07.2025 14:28:51
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54452
- EPSS 0.07%
- Published 23.07.2025 05:29:34
- Last modified 28.07.2025 14:27:23
Improper Authentication vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54451
- EPSS 0.07%
- Published 23.07.2025 05:29:06
- Last modified 28.07.2025 14:24:17
Improper Control of Generation of Code ('Code Injection') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54450
- EPSS 0.09%
- Published 23.07.2025 05:28:25
- Last modified 28.07.2025 17:26:02
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54449
- EPSS 0.07%
- Published 23.07.2025 05:27:49
- Last modified 28.07.2025 17:25:47
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54455
- EPSS 0.08%
- Published 23.07.2025 05:27:10
- Last modified 28.07.2025 17:25:40
Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-54454
- EPSS 0.08%
- Published 23.07.2025 05:26:17
- Last modified 28.07.2025 17:25:31
Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.
CVE-2025-4632
- EPSS 65.4%
- Published 13.05.2025 05:19:19
- Last modified 27.05.2025 21:23:11
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1052 allows attackers to write arbitrary file as system authority.
CVE-2024-7399
- EPSS 64.54%
- Published 12.08.2024 13:38:41
- Last modified 13.08.2024 15:30:52
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1050 allows attackers to write arbitrary file as system authority.