CVE-2025-54443: Path Traversal
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9 Server allows Upload a Web Shell to a Web Server.This issue affects MagicINFO 9 Server: less than 21.1080.0
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54443?
CVE-2025-54443 is rated as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2025-54443?
To fix CVE-2025-54443, upgrade the Samsung Electronics MagicINFO 9 Server to version 21.1080.0 or higher.
What type of vulnerability is CVE-2025-54443?
CVE-2025-54443 is a Path Traversal vulnerability that allows unauthorized file uploads to the server.
Which versions of MagicINFO 9 Server are affected by CVE-2025-54443?
CVE-2025-54443 affects all versions of Samsung Electronics MagicINFO 9 Server below 21.1080.0.
What are the risks associated with CVE-2025-54443?
The risks include the possibility of attackers uploading malicious web shells, which can lead to unauthorized access and control of the server.