Samsung MagicINFO 9 Server
cpe:2.3:a:samsung:magicinfo_9_server:*:*:*:*:*:*:*
- < 21.1080.0
A path traversal vulnerability has been identified in Samsung Electronics MagicINFO 9 Server versions prior to 21.1080.0. This vulnerability allows attackers to upload a web shell to the web server by improperly limiting a pathname to a restricted directory.
Exploitation of this vulnerability could lead to unauthorized file uploads, allowing for the execution of malicious scripts on the web server.
Users can update to the latest version of Samsung MagicINFO 9 Server. Instructions for checking and applying software updates are available on the Samsung website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.