5
CVSSv2

CVE-2013-4496

Published: 14/03/2014 Updated: 29/08/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Samba 3.x prior to 3.6.23, 4.0.x prior to 4.0.16, and 4.1.x prior to 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote malicious users to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

samba samba

canonical ubuntu linux 13.10

canonical ubuntu linux 12.10

canonical ubuntu linux 10.04

canonical ubuntu linux 12.04

Vendor Advisories

Samba did not properly enforce the password guessing protection mechanism ...