CVE-2009-2813

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

6.0medium2.0
0246810

CVSS Score: 6.0/10

All CVSS Scores

CVSS 2.0
6.0

Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Description

Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdubuntu

CWEs

CWE-264

Vulnerable Software (6)

Type: Configuration

Product: samba

Operating System: ubuntu hardy 8.04

Trait:
{  "fixed": "3.0.28a-1ubuntu4.9"}

Source: ubuntu

Type: Configuration

Product: samba

Operating System: debian

Trait:
{  "fixed": "2:3.4.2-1"}

Source: debian

Type: Configuration

Vendor: apple

Product: mac_os_x

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:samba:samba:3.0.12:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23uri": "cpe:...

Source: nvd

Type: Configuration

Vendor: apple

Product: mac_os_x_server

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:samba:samba:3.0.12:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23uri": "cpe:...

Source: nvd

Type: Configuration

Vendor: fedoraproject

Product: fedora

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:fedoraproject:fedora:11:*:*:*:*:*:*:*",      "vulnerable": true    }  ],  "operator": "OR"}

Source: nvd

Type: Configuration

Vendor: samba

Product: samba

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:samba:samba:3.0.12:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23uri": "cpe:...

Source: nvd