← Back

CVE-2024-31952

nvd nist
Published: May 14, 2024Modified: Jun 3, 2025

JSON object

Loading...
6.7
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD

Description

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permission writes. (The attacker must already have user privileges, and an administrator password must be entered during the program installation stage for privilege escalation.)

Affected (1)

Products: Samsung: Magician
1 product
Magician
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 8.0.0
Running on/withPlatform Versions
Apple
Macos
All versions

Timeline

No history available yet.