CVE-2025-53078

HIGH

Samsung Data Management Server Firmware - Insecure Deserialization

Title source: rule

Description

Deserialization of Untrusted Data in Samsung DMS(Data Management Server) allows attackers to execute arbitrary code via write file to system

Scores

CVSS v3 8.0
EPSS 0.0044
EPSS Percentile 63.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

Classification

CWE
CWE-502
Status published

Affected Products (1)

samsung/data_management_server_firmware < 2.3.13.1

Timeline

Published Jul 29, 2025
Tracked Since Feb 18, 2026