CVE-2025-20949: Path Traversal
Published May 7, 2025
·Updated
Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary file with the privilege of Samsung Members.
Affected Software
2 affected components
Samsung Members<5.0.00.11
Samsung Members<5.0.00.11
Event History
May 7, 2025
CVE Published
via MITRE·08:24 AM
Data Sourced
via MITRE·08:24 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-20949?
CVE-2025-20949 is classified as a critical vulnerability due to its ability to allow unauthorized access to files.
2
How do I fix CVE-2025-20949?
To fix CVE-2025-20949, update Samsung Members to version 5.0.00.11 or later.
3
What are the risks associated with CVE-2025-20949?
The risks of CVE-2025-20949 include unauthorized reading and writing of sensitive files by attackers.
4
Which versions of Samsung Members are affected by CVE-2025-20949?
CVE-2025-20949 affects Samsung Members versions prior to 5.0.00.11.
5
Is there a workaround for CVE-2025-20949?
There is no official workaround for CVE-2025-20949; the best mitigation is to update to the latest version.