Home/Product/samsung magicinfo 9 server
Product

samsung magicinfo 9 server

23 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-25202
< 21.1090.1
The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo9 Server.T
9.8CRITICAL
CVE-2026-25201
< 21.1090.1
An unauthenticated user can upload arbitrary files to execute remote code, leading to privilege escalation in MagicInfo9 Server. T
8.8HIGH
CVE-2026-25200
< 21.1090.1
A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Stored XSS, w
9.8CRITICAL
CVE-2025-54455
< 21.1080.0
Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affe
9.1CRITICAL
CVE-2025-54454
< 21.1080.0
Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affe
9.1CRITICAL
CVE-2025-54453
< 21.1080.0
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Se
8.8HIGH
CVE-2025-54452
< 21.1080.0
Improper Authentication vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects Ma
7.3HIGH
CVE-2025-54451
< 21.1080.0
Improper Control of Generation of Code ('Code Injection') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Inje
9.8CRITICAL
CVE-2025-54450
< 21.1080.0
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Se
7.2HIGH
CVE-2025-54449
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
9.8CRITICAL
CVE-2025-54448
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
9.8CRITICAL
CVE-2025-54447
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
8.1HIGH
CVE-2025-54446
< 21.1080.0
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Se
9.8CRITICAL
CVE-2025-54445
< 21.1080.0
Improper Restriction of XML External Entity Reference vulnerability in Samsung Electronics MagicINFO 9 Server allows Server Side R
8.2HIGH
CVE-2025-54444
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
9.8CRITICAL
CVE-2025-54443
< 21.1080.0
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Se
9.8CRITICAL
CVE-2025-54442
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
9.8CRITICAL
CVE-2025-54441
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
8.8HIGH
CVE-2025-54440
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
9.8CRITICAL
CVE-2025-54439
< 21.1080.0
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This
8.8HIGH
CVE-2025-54438
< 21.1080.0
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Se
9.8CRITICAL
CVE-2025-4632
< 21.1052.0
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1052 all
9.8CRITICAL
CVE-2024-7399
< 21.1050.0
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1050 all
8.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin