Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
References
Link | Resource |
---|---|
https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
03 Jun 2025, 16:34
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:samsung:magician:8.0.0:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory | |
First Time |
Microsoft
Microsoft windows Samsung Samsung magician |
21 Nov 2024, 09:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - |
03 Jul 2024, 02:02
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-426 |
21 Jun 2024, 11:22
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
20 Jun 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-20 21:15
Updated : 2025-06-03 16:34
NVD link : CVE-2024-36071
Mitre link : CVE-2024-36071
CVE.ORG link : CVE-2024-36071
JSON object : View
Products Affected
samsung
- magician
microsoft
- windows
CWE
CWE-426
Untrusted Search Path