CVE-2025-53078: Critical severity Samsung DMS vulnerability
Published Jul 29, 2025
·Updated
Deserialization of Untrusted Data in Samsung DMS(Data Management Server) allows attackers to execute arbitrary code via write file to system
Affected Software
5 affected components
Samsung DMS
All of the following
Any of the following
Samsung Data Management Server Firmware>=2.0.0<2.3.13.1
Samsung Data Management Server Firmware>=2.5.0.17<2.6.14.1
Samsung Data Management Server Firmware>=2.7.0.15<2.9.3.6
Samsung Data Management Server
Event History
Jul 29, 2025
CVE Published
via MITRE·05:04 AM
Data Sourced
via MITRE·05:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-53078?
CVE-2025-53078 is rated with a high severity due to its potential to allow arbitrary code execution.
2
How do I fix CVE-2025-53078?
To fix CVE-2025-53078, ensure that you update the Samsung DMS to the latest security patch that addresses this vulnerability.
3
What systems are affected by CVE-2025-53078?
CVE-2025-53078 specifically affects the Samsung Data Management Server (DMS).
4
Can CVE-2025-53078 allow remote code execution?
Yes, CVE-2025-53078 allows attackers to execute arbitrary code remotely via deserialization of untrusted data.
5
Is CVE-2025-53078 being actively exploited?
There is currently no public information indicating that CVE-2025-53078 is being actively exploited, but it is classified as a critical vulnerability.