Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary file with the privilege of Samsung Members.
History

Thu, 17 Jul 2025 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung members
Weaknesses CWE-22
CPEs cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*
Vendors & Products Samsung
Samsung members

Mon, 14 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00017}

epss

{'score': 0.00018}


Thu, 08 May 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 07 May 2025 08:30:00 +0000

Type Values Removed Values Added
Description Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary file with the privilege of Samsung Members.
References
Metrics cvssV3_1

{'score': 5.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: SamsungMobile

Published: 2025-05-07T08:24:02.875Z

Updated: 2025-05-07T19:54:35.086Z

Reserved: 2024-11-06T02:30:14.863Z

Link: CVE-2025-20949

cve-icon Vulnrichment

Updated: 2025-05-07T19:54:30.464Z

cve-icon NVD

Status : Analyzed

Published: 2025-05-07T09:15:15.033

Modified: 2025-07-17T00:42:54.820

Link: CVE-2025-20949

cve-icon Redhat

No data.