Vulnerabilities
Vulnerable Software
Samba:  >> Samba  >> 2.2a  Security Vulnerabilities
The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.
CVSS Score
7.5
EPSS Score
0.049
Published
2004-11-03
Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to execute arbitrary code via a buffer overflow attack.
CVSS Score
7.5
EPSS Score
0.067
Published
2002-12-31


Contact Us

Shodan ® - All rights reserved