Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An unauthenticated user can upload arbitrary files to execute remote code, leading to privilege escalation in MagicInfo9 Server. This issue affects MagicINFO 9 Server: less than 21.1090.1.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
危险类型文件的不加限制上传
Vulnerability Title
SAMSUNG MagicINFO 9 Server 安全漏洞
Vulnerability Description
SAMSUNG MagicINFO 9 Server是韩国三星(SAMSUNG)公司的一个企业级数字标牌内容管理与设备监控平台。 SAMSUNG MagicINFO 9 Server 21.1090.1之前版本存在安全漏洞,该漏洞源于未经身份验证的用户可上传任意文件,可能导致远程代码执行和权限提升。
CVSS Information
N/A
Vulnerability Type
N/A