CVE-2001-1162
Published Jun 23, 2001
Last updated 7 years ago
Overview
- Description
- Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93AF43FA-9947-4F26-96E8-1D77BF909AA0" }, { "criteria": "cpe:2.3:a:samba:samba:2.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4A46D8D-1535-400B-B1CD-AA2685F4164D" }, { "criteria": "cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1CB46ABA-F403-4715-915D-870BD221C8FE" }, { "criteria": "cpe:2.3:a:samba:samba:2.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFD51F01-B47A-47F5-8798-2EB53EB17297" }, { "criteria": "cpe:2.3:a:samba:samba:2.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C127A2E6-F94F-41D5-82AA-60C0190186BF" }, { "criteria": "cpe:2.3:a:samba:samba:2.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65AC9643-E1A5-4013-9607-17C6CC7CC63B" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:hp:cifs-9000_server:a.01.05:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "729FE6E7-5665-4A87-A281-0F904AEA1D05" }, { "criteria": "cpe:2.3:a:hp:cifs-9000_server:a.01.06:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "46E92180-5696-49F2-8972-1949F2EBD5D7" } ], "operator": "OR" } ] } ]