Samsung MagicINFO 9 Server Incorrect Default Permissions Local Privilege Escalation Vulnerability

Vulnerability

A local privilege escalation vulnerability has been identified in Samsung MagicINFO 9 Server versions prior to 21.1091.1. This issue arises from incorrect default permissions, which could be exploited to gain elevated privileges on the system.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain higher-level permissions than intended.

Remediation

Users can apply the available patch, which modifies the verification logic of the input, to address this vulnerability. Instructions for updating can be found on the Samsung Security Updates page.

Added: Apr 10, 2026, 2:44 AM
Updated: Apr 10, 2026, 2:44 AM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
10.0
exploitability
3.8
remediation
0.0
relevance
5.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.