Skip to main content

Vendor archive

samsung CVEs

Beta · best-effort

1,628 CVEs tagged to vendor samsung113 Critical, 438 High, 965 Medium, 112 Low, 0 Unrated.

CVE-2025-21010

Published Aug 6, 2025

Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to deactivate Samsung account.

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-20990

Published Aug 6, 2025

Improper access control in accessing system device node prior to SMR Aug-2025 Release 1 allows local attackers to access device identifier.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-54455

Published Jul 23, 2025

Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54454

Published Jul 23, 2025

Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54453

Published Jul 23, 2025

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects Mag…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54452

Published Jul 23, 2025

Improper Authentication vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO 9 Server: less than 21.1080.0.

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54451

Published Jul 23, 2025

Improper Control of Generation of Code ('Code Injection') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54450

Published Jul 23, 2025

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects Mag…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54449

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54448

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54447

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54446

Published Jul 23, 2025

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Upload a Web Shell to a Web Server.Th…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54445

Published Jul 23, 2025

Improper Restriction of XML External Entity Reference vulnerability in Samsung Electronics MagicINFO 9 Server allows Server Side Request Forgery.This issue affects MagicINFO 9 Ser…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54444

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54443

Published Jul 23, 2025

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Upload a Web Shell to a Web Server.Th…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54442

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-54441

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-54440

Published Jul 23, 2025

Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 251-275 of 1,628 CVEsPage 11 of 66