EUVD-2025-14362
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1052 allows attackers to write arbitrary file as system authority.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 22 May 2025. Evidence sources: cisa_kev.
- ENISA score
- 9.8 · CVSS 3.1
- Advisory evidence
- No linked advisory details stored yet
