An issue was discovered in the installer in Samsung Magician 8.1.0 on Windows. An attacker can create arbitrary folders in the system permission directory via a symbolic link during the installation process.
History

Wed, 04 Jun 2025 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft
Microsoft windows
Samsung
Samsung magician
CPEs cpe:2.3:a:samsung:magician:8.1.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows
Samsung
Samsung magician

Tue, 03 Dec 2024 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-1236
CWE-276
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 03 Dec 2024 18:30:00 +0000

Type Values Removed Values Added
Description An issue was discovered in the installer in Samsung Magician 8.1.0 on Windows. An attacker can create arbitrary folders in the system permission directory via a symbolic link during the installation process.
References
Metrics cvssV3_1

{'score': 2.8, 'vector': 'CVSS:3.1/AC:L/AV:L/A:N/C:N/I:L/PR:L/S:U/UI:R'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-12-03T00:00:00

Updated: 2024-12-03T19:21:00.884Z

Reserved: 2024-11-25T00:00:00

Link: CVE-2024-53921

cve-icon Vulnrichment

Updated: 2024-12-03T19:20:57.528Z

cve-icon NVD

Status : Analyzed

Published: 2024-12-03T19:15:11.957

Modified: 2025-06-03T16:34:18.123

Link: CVE-2024-53921

cve-icon Redhat

No data.