Samsung MagicINFO 9 Server Hard-Coded Credentials Authentication Bypass Vulnerability

Vulnerability

A vulnerability allowing authentication bypass through the use of hard-coded credentials has been identified in Samsung Electronics MagicINFO 9 Server versions prior to 21.1080.0. This issue enables unauthorized access to the server.

Impact

Exploitation of this vulnerability allows for authentication bypass, granting unauthorized users access to the MagicINFO 9 Server.

Remediation

Users can check for the latest firmware updates on the Samsung website. If the default update settings are enabled, the latest version will have been automatically installed. Delivery times for security patches may vary by region and model.

Added: Jul 23, 2025, 6:25 AM
Updated: Jul 23, 2025, 6:25 AM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
5.0
exploitability
7.4
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.