Samba 4.x prior to 4.0.4, when configured as an Active Directory domain controller, uses world-writable permissions on non-default CIFS shares, which allows remote authenticated users to read, modify, create, or delete arbitrary files via standard filesystem operations.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
samba samba 4.0.3 |
||
samba samba 4.0.0 |
||
samba samba 4.0.2 |
||
samba samba 4.0.1 |