Skip to main content

Vendor/product archive

samsung / magician CVEs

Beta · best-effort

8 CVEs tagged to samsung / magician0 Critical, 3 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2025-57836

Published Jan 5, 2026

An issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder with weak permissions during installation, allowing a non-admi…

CVSS 7.8 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-32098

Published Sep 2, 2025

An issue was discovered in Samsung Magician 6.3 through 8.3 on Windows. An attacker can achieve Elevation of Privileges to SYSTEM by exploiting insecure file delete operations dur…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2024-36071

Published Jun 20, 2024

Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-31953

Published May 14, 2024

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and executable files used during the installation process, an attac…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-31952

Published May 14, 2024

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permi…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-23769

Published Feb 7, 2024

Improper privilege control for the named pipe in Samsung Magician PC Software 8.0.0 (for Windows) allows a local attacker to read privileged data.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3218

Published Jun 21, 2017

Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1