CVE Database · CVE-2025-20949
CVSS v3.1
5.1
EPSS
0.30%
Published
May 7, 2025
Modified
Jul 16, 2025
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary file with the privilege of Samsung Members.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:NWeaknesses (CWE)
Affected Products (1)
References (1)