Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-1140

Опубликовано: 22 авг. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 3.3
EPSS Средний

Описание

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
Версия от 4.8.0 (включая) до 4.8.4 (исключая)

EPSS

Процентиль: 95%
0.17346
Средний

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-20
CWE-20

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
redhat
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
debian
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of L ...

CVSS3: 6.5
github
больше 3 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость компонента LDAP-сервера программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 95%
0.17346
Средний

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-20
CWE-20