CVE-2025-32098
- EPSS 0.04%
- Published 02.09.2025 00:00:00
- Last modified 05.09.2025 19:33:29
An issue was discovered in Samsung Magician 6.3 through 8.3 on Windows. An attacker can achieve Elevation of Privileges to SYSTEM by exploiting insecure file delete operations during the update process.
CVE-2024-53921
- EPSS 0.12%
- Published 03.12.2024 19:15:11
- Last modified 03.06.2025 16:34:18
An issue was discovered in the installer in Samsung Magician 8.1.0 on Windows. An attacker can create arbitrary folders in the system permission directory via a symbolic link during the installation process.
CVE-2024-36071
- EPSS 0.08%
- Published 20.06.2024 21:15:49
- Last modified 03.06.2025 16:34:31
Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
CVE-2024-31953
- EPSS 0.28%
- Published 14.05.2024 15:27:50
- Last modified 03.06.2025 16:34:26
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and executable files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (The atta...
CVE-2024-31952
- EPSS 0.15%
- Published 14.05.2024 15:26:04
- Last modified 03.06.2025 16:34:36
An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permission writes. (The attacker must already have user privileges, and an a...
CVE-2024-23769
- EPSS 0.05%
- Published 07.02.2024 19:15:08
- Last modified 21.11.2024 08:58:22
Improper privilege control for the named pipe in Samsung Magician PC Software 8.0.0 (for Windows) allows a local attacker to read privileged data.
CVE-2017-3218
- EPSS 0.02%
- Published 21.06.2017 20:29:00
- Last modified 20.04.2025 01:37:25
Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates.