Unknown · Samba-Client · CVE-2021-27185
Name of the Vulnerable Software and Affected Versions:
samba-client versions prior to 4.0.0
Description:
The issue allows command injection due to the use of `process.exec`. This is a problem in the samba-client package for Node.js.
Recommendations:
For versions prior to 4.0.0, update to version 4.0.0 or later to resolve the issue. As a temporary workaround, consider restricting the use of the `process.exec` function until a patch is available.