CVE-2026-25200 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Stored XSS, which can result in account tak…
Critical CVSS: 9.8

CVE-2026-25200

A vulnerability in MagicInfo9 Server allows authorized users to upload HTML files without authentication, leading to Stored XSS, which can result in account takeover


This issue affects MagicINFO 9 Server: less than 21.1090.1.
Vendor
Samsung
Product
Magicinfo 9 Server
CWE
CWE-434
Yayın Tarihi
2026-02-02 05:16:05
Güncelleme
2026-03-10 18:43:02
Source Identifier
PSIRT@samsung.com
KEV Date Added
-

Kategoriler

Referanslar