Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 16

Количество 16

github логотип

GHSA-59rx-q76w-hqrw

2 месяца назад

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
EPSS: Низкий
ubuntu логотип

CVE-2026-3012

2 месяца назад

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
EPSS: Низкий
redhat логотип

CVE-2026-3012

2 месяца назад

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
EPSS: Низкий
nvd логотип

CVE-2026-3012

2 месяца назад

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
EPSS: Низкий
debian логотип

CVE-2026-3012

2 месяца назад

A flaw was found in Samba\u2019s certificate auto-enrollment Group Pol ...

CVSS3: 8
EPSS: Низкий
fstec логотип

BDU:2026-07422

2 месяца назад

Уязвимость компонента управления групповыми политиками (GPO) программного обеспечения Samba, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 8
EPSS: Низкий
oracle-oval логотип

ELSA-2026-22644

около 2 месяцев назад

ELSA-2026-22644: samba security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2074-1

2 месяца назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2072-1

2 месяца назад

Security update for samba

EPSS: Низкий
rocky логотип

RLSA-2026:22644

около 2 месяцев назад

Important: samba security update

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20905-1

около 2 месяцев назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2076-1

2 месяца назад

Security update for samba

EPSS: Низкий
rocky логотип

RLSA-2026:25049

около 2 месяцев назад

Critical: samba security update

EPSS: Низкий
rocky логотип

RLSA-2026:22963

около 2 месяцев назад

Critical: samba security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25049

около 1 месяца назад

ELSA-2026-25049: samba security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22963

17 дней назад

ELSA-2026-22963: samba security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-59rx-q76w-hqrw

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
0%
Низкий
2 месяца назад
ubuntu логотип
CVE-2026-3012

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
0%
Низкий
2 месяца назад
redhat логотип
CVE-2026-3012

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
0%
Низкий
2 месяца назад
nvd логотип
CVE-2026-3012

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.

CVSS3: 8
0%
Низкий
2 месяца назад
debian логотип
CVE-2026-3012

A flaw was found in Samba\u2019s certificate auto-enrollment Group Pol ...

CVSS3: 8
0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-07422

Уязвимость компонента управления групповыми политиками (GPO) программного обеспечения Samba, позволяющая нарушителю обойти существующие ограничения безопасности

CVSS3: 8
0%
Низкий
2 месяца назад
oracle-oval логотип
ELSA-2026-22644

ELSA-2026-22644: samba security update (IMPORTANT)

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2074-1

Security update for samba

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2072-1

Security update for samba

2 месяца назад
rocky логотип
RLSA-2026:22644

Important: samba security update

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20905-1

Security update for samba

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2076-1

Security update for samba

2 месяца назад
rocky логотип
RLSA-2026:25049

Critical: samba security update

около 2 месяцев назад
rocky логотип
RLSA-2026:22963

Critical: samba security update

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-25049

ELSA-2026-25049: samba security update (CRITICAL)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-22963

ELSA-2026-22963: samba security update (CRITICAL)

17 дней назад

Уязвимостей на страницу