CVE-2024-7399
HIGH
CVSS: 8.8
EPSS: 91.9%
VulnCheck KEV
PoC Available
Metasploit
CWE-22
CWE-434
CWE-22
T1083
T1105
Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1050 allows attackers to write arbitrary file as system authority.
Published: 2024-08-12