CVE-2026-25200
A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Stored XSS, which can result in account takeover
This issue affects MagicINFO 9 Server: less than 21.1090.1.
This issue affects MagicINFO 9 Server: less than 21.1090.1.
Vendor
Product
CWE
Yayın Tarihi
2026-02-02 05:16:05
Güncelleme
2026-03-10 18:43:02
Source Identifier
PSIRT@samsung.com
KEV Date Added
-