Home

Description

Absolute Path Traversal in Samsung DMS(Data Management Server) allows authenticated attacker (Administrator) to read sensitive files

PUBLISHED Reserved 2025-06-24 | Published 2025-07-29 | Updated 2025-07-29 | Assigner samsung.tv_appliance




MEDIUM: 4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-36 Absolute Path Traversal

Product status

Default status
unaffected

2.0.0 (custom) before 2.3.13.1
affected

2.5.0.17 (custom) before 2.6.14.1
affected

2.7.0.15 (custom) before 2.9.3.6
affected

Credits

Noam Moshe of Claroty Team82 finder

References

security.samsungda.com/securityUpdates.html

cve.org (CVE-2025-53079)

nvd.nist.gov (CVE-2025-53079)

Download JSON