PT-2011-1099 · Samba Team+2 · Samba+2

Yoshihiro Ishikawa

·

Publicado

2011-07-29

·

Atualizado

2024-06-15

·

CVE-2011-2522

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Samba versions 3.5.6 Samba versions prior to 3.5.10 cifs-utils version 4.8.1
Description The issue concerns multiple vulnerabilities in the Samba software package, which can lead to a breach of confidentiality, integrity, and availability of protected information. These vulnerabilities can be exploited remotely. Specifically, the Samba Web Administration Tool (SWAT) in Samba 3.x is affected by multiple cross-site request forgery (CSRF) vulnerabilities, allowing remote attackers to hijack the authentication of administrators for various requests, such as shutting down daemons, starting daemons, adding shares, removing shares, adding printers, removing printers, adding user accounts, or removing user accounts.
Recommendations For Samba versions 3.5.6, consider updating to a version prior to 3.5.10 to mitigate the risk. For cifs-utils version 4.8.1, at the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting access to the Samba Web Administration Tool (SWAT) to minimize the risk of exploitation. Avoid using the Samba software package until the issue is resolved.

Exploit

CSRF

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-06161
BDU:2015-06162
BDU:2015-06325
BDU:2015-06327
BDU:2015-06509
BDU:2015-06514
BDU:2015-06519
BDU:2015-06520
BDU:2015-06521
BDU:2015-06522
BDU:2015-06527
BDU:2015-06528
BDU:2015-06529
BDU:2015-06530
BDU:2015-06531
CVE-2011-2522
DSA-2290-1
ECHO-D576-D17E-8079
OPENSUSE-SU-2024:10069-1
RHSA-2011:1219
RHSA-2011:1220
RHSA-2011:1221
RHSA-2011_1219
RHSA-2011_1220
RHSA-2011_1221

Produtos afetados

Red Hat
Samba
Cifs-Utils