CVE-2025-32098
- EPSS 0.04%
- Veröffentlicht 02.09.2025 00:00:00
- Zuletzt bearbeitet 05.09.2025 19:33:29
An issue was discovered in Samsung Magician 6.3 through 8.3 on Windows. An attacker can achieve Elevation of Privileges to SYSTEM by exploiting insecure file delete operations during the update process.
CVE-2024-53921
- EPSS 0.12%
- Veröffentlicht 03.12.2024 19:15:11
- Zuletzt bearbeitet 03.06.2025 16:34:18
An issue was discovered in the installer in Samsung Magician 8.1.0 on Windows. An attacker can create arbitrary folders in the system permission directory via a symbolic link during the installation process.
CVE-2024-36071
- EPSS 0.08%
- Veröffentlicht 20.06.2024 21:15:49
- Zuletzt bearbeitet 03.06.2025 16:34:31
Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
CVE-2024-31953
- EPSS 0.28%
- Veröffentlicht 14.05.2024 15:27:50
- Zuletzt bearbeitet 03.06.2025 16:34:26
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and executable files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (The atta...
CVE-2024-31952
- EPSS 0.15%
- Veröffentlicht 14.05.2024 15:26:04
- Zuletzt bearbeitet 03.06.2025 16:34:36
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permission writes. (The attacker must already have user privileges, and an a...
CVE-2024-23769
- EPSS 0.05%
- Veröffentlicht 07.02.2024 19:15:08
- Zuletzt bearbeitet 21.11.2024 08:58:22
Improper privilege control for the named pipe in Samsung Magician PC Software 8.0.0 (for Windows) allows a local attacker to read privileged data.
CVE-2017-3218
- EPSS 0.02%
- Veröffentlicht 21.06.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates.