CVE-2025-54444: Malicious File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This issue affects MagicINFO 9 Server: less than 21.1080.0.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54444?
CVE-2025-54444 is considered a critical vulnerability due to its potential for code injection through unrestricted file uploads.
How do I fix CVE-2025-54444?
The recommended fix for CVE-2025-54444 is to upgrade the MagicINFO 9 Server to version 21.1080.0 or later.
What types of files are affected by CVE-2025-54444?
CVE-2025-54444 allows for the upload of dangerous file types that can lead to code execution.
Who is affected by CVE-2025-54444?
Organizations using Samsung Electronics MagicINFO 9 Server versions prior to 21.1080.0 are affected by CVE-2025-54444.
What can attackers do with CVE-2025-54444?
Attackers can exploit CVE-2025-54444 to perform code injection, potentially compromising the server and accessing sensitive data.