CVE-2024-36071

Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:samsung:magician:8.0.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

03 Jun 2025, 16:34

Type Values Removed Values Added
CPE cpe:2.3:a:samsung:magician:8.0.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
First Time Microsoft windows
Samsung
Microsoft
Samsung magician
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory

Information

Published : 2024-06-20 21:15

Updated : 2025-06-03 16:34


NVD link : CVE-2024-36071

Mitre link : CVE-2024-36071

CVE.ORG link : CVE-2024-36071


JSON object : View

Products Affected

microsoft

  • windows

samsung

  • magician
CWE
CWE-426

Untrusted Search Path