CVE-2025-53077
BaseFortify
Publication date: 2025-07-29
Last updated on: 2025-08-11
Assigner: Samsung TV & Appliance
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| samsung | data_management_server_firmware | From 2.0.0 (inc) to 2.3.13.1 (exc) |
| samsung | data_management_server_firmware | From 2.5.0.17 (inc) to 2.6.14.1 (exc) |
| samsung | data_management_server_firmware | From 2.7.0.15 (inc) to 2.9.3.6 (exc) |
| samsung | data_management_server | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-698 | The web application sends a redirect to another location, but instead of exiting, it executes additional code. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an execution after redirect issue in Samsung Data Management Server (DMS) that allows attackers to execute certain limited functions without having the necessary permissions. Essentially, an attacker can exploit this flaw to perform actions they should not be authorized to do.
How can this vulnerability impact me? :
The vulnerability can impact you by compromising the integrity of the platform. Attackers exploiting this flaw could execute unauthorized functions, potentially leading to limited but harmful changes or disruptions in the system's operation.