Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-4496

Опубликовано: 14 мар. 2014
Источник: debian
EPSS Низкий

Описание

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sambafixed2:4.1.6+dfsg-1package
sambafixed2:3.6.6-6+deb7u3wheezypackage
sambano-dsasqueezepackage
samba4removedpackage
samba4fixed4.0.0~beta2+dfsg1-3.2+deb7u1wheezypackage

Примечания

  • http://www.samba.org/samba/security/CVE-2013-4496

EPSS

Процентиль: 89%
0.04521
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

redhat
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

nvd
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

github
около 3 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

fstec
больше 10 лет назад

Уязвимость операционной системы SUSE Linux Enterprise, позволяющая злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 89%
0.04521
Низкий