CNNVD-202507-3278 Information

CNNVD ID

CNNVD-202507-3278

CVE-2016-15046

  • CNNVD Published: 2025-07-25

Description (Chinese)

SAMSUNG Security Manager是韩国三星(SAMSUNG)公司的一款用于管理三星安全硬盘的软件。 SAMSUNG Security Manager 1.32版本和1.4版本存在安全漏洞,该漏洞源于PUT方法限制不当,可能导致远程代码执行。

Description (English)

SAMSUNG Security Manager is a software for the management of a three-star secure hard drive from the Korea Samsung company. There is a security loophole in versions 1.32 and 1.4 of SAMSUNG Security Manager, which stems from inappropriate PUT methodological limitations that may lead to remote code implementation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

三星

Published

2025-07-25

Last Modified

2026-02-24

References

https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/windows/browser/samsung_security_manager_put.rb http://security.hanwhatechwin.com/product/product_view.asp?idx=6779#FL080000 https://web.archive.org/web/20160518205411/ http://www.zerodayinitiative.com/advisories/ZDI-16-481/ https://srcincite.io/advisories/src-2016-0032/ http://www.zerodayinitiative.com/advisories/ZDI-15-156/ https://www.vulncheck.com/advisories/samsung-security-manager-activemq-file-upload-rce https://access.redhat.com/security/cve/cve-2016-15046

Patch

https://security.hanwhatechwin.com/cn/

Share on: