CVE: CVE-2004-0815

Export to Word

The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.

Threat-Mapped Scoring

Score: 0.0

Priority: Unclassified

EPSS

Score: 0.08221
Percentile: 0.91813

CVSS Scoring

CVSS v2 Score: 7.5

Severity:

Affected Products

← Back to Home