cve detail
CVE-2024-7399
naam
Samsung MagicINFO 9 Server Path Traversal Vulnerability
Samsung MagicINFO 9 Server contains a path traversal vulnerability that could allow an attacker to write arbitrary files as system authority.
KEV
bekend misbruikt
EPSS
81%
percentiel
99%
vendor
Samsung
product
MagicINFO 9 Server
toegevoegd aan KEV
24 apr 2026
due date
08 mei 2026
ransomware
Unknown
CWE
CWE-22, CWE-434
EPSS datum
12 mei 2026
aanbevolen actie
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
notities
https://security.samsungtv.com/securityUpdates ; https://nvd.nist.gov/vuln/detail/CVE-2024-7399