Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
smb4k vulnerabilities and exploits
(subscribe to this query)
3.7
CVSSv2
CVE-2007-0472
Multiple race conditions in Smb4K prior to 0.8.0 allow local users to (1) modify arbitrary files via unspecified manipulations of Smb4K's lock file, which is not properly handled by the remove_lock_file function in core/smb4kfileio.cpp, and (2) add lines to the sudoers file ...
Smb4k Smb4k 0.6
Smb4k Smb4k 0.7
Smb4k Smb4k 0.4
Smb4k Smb4k 0.5
3.3
CVSSv2
CVE-2007-0474
Smb4K prior to 0.8.0 allow local users, when present on the Smb4K sudoers list, to kill arbitrary processes, related to a "design issue with smb4k_kill."
Smb4k Smb4k 0.6
Smb4k Smb4k 0.7
Smb4k Smb4k 0.4
Smb4k Smb4k 0.5
1.9
CVSSv2
CVE-2007-0473
The writeFile function in core/smb4kfileio.cpp in Smb4K prior to 0.8.0 does not preserve /etc/sudoers permissions across modifications, which allows local users to obtain sensitive information (/etc/sudoers contents) by reading this file.
Smb4k Smb4k 0.4
Smb4k Smb4k 0.5
Smb4k Smb4k 0.6
Smb4k Smb4k 0.7
4.4
CVSSv2
CVE-2007-0475
Multiple stack-based buffer overflows in utilities/smb4k_*.cpp in Smb4K prior to 0.8.0 allow local users, when present on the Smb4K sudoers list, to gain privileges via unspecified vectors related to the args variable and unspecified other variables, in conjunction with the sudo ...
Smb4k Smb4k 0.7
Smb4k Smb4k 0.4
Smb4k Smb4k 0.5
Smb4k Smb4k 0.6
2.1
CVSSv2
CVE-2005-2851
smb4k 0.4 and other versions prior to 0.6.3 allows local users to read sensitive files via a symlink attack on the (1) smb4k.tmp or (2) sudoers temporary files.
Smb4k Smb4k 0.4
Smb4k Smb4k 0.5
Smb4k Smb4k 0.6
7.2
CVSSv2
CVE-2017-8849
smb4k prior to 2.0.1 allows local users to gain root privileges by leveraging failure to verify arguments to the mount helper DBUS service.
Smb4k Project Smb4k
Debian Debian Linux 8.0
1 EDB exploit
1 Github repository
5
CVSSv2
CVE-2014-2581
Smb4K prior to 1.1.1 allows remote malicious users to obtain credentials via vectors related to the cuid option in the "Additional options" line edit.
Smb4k Project Smb4k
Fedoraproject Fedora 19
Fedoraproject Fedora 20
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-3675
CVE-2024-3400
CVE-2024-23557
mass assignment
CVE-2023-1389
local file inclusion
CVE-2024-32596
file upload
CVE-2024-32593
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started