Логотип exploitDog
bind:"CVE-2017-12150" OR bind:"CVE-2017-12151" OR bind:"CVE-2017-12163"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-12150" OR bind:"CVE-2017-12151" OR bind:"CVE-2017-12163"

Количество 32

Количество 32

ubuntu логотип

CVE-2017-12151

почти 7 лет назад

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2017-12151

почти 8 лет назад

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2017-12151

почти 7 лет назад

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2017-12151

почти 7 лет назад

A flaw was found in the way samba client before samba 4.4.16, samba 4. ...

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2017-12163

почти 7 лет назад

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
EPSS: Средний
redhat логотип

CVE-2017-12163

почти 8 лет назад

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
EPSS: Средний
nvd логотип

CVE-2017-12163

почти 7 лет назад

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
EPSS: Средний
debian логотип

CVE-2017-12163

почти 7 лет назад

An information leak flaw was found in the way SMB1 protocol was implem ...

CVSS3: 4.1
EPSS: Средний
github логотип

GHSA-xc7p-hf9j-w53w

около 3 лет назад

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2019-00224

почти 8 лет назад

Уязвимость пакета программ для сетевого взаимодействия Samba, связанная с отсутствием требования подписи и шифрования SMB-трафика при использовании перенаправлений DFS, позволяющая нарушителю реализовать атаку «человек посередине»

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-hvhw-9wrg-hf3q

около 3 лет назад

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 7.1
EPSS: Средний
fstec логотип

BDU:2021-01433

почти 7 лет назад

Уязвимость реализации протокола SMB1 пакета программ сетевого взаимодействия Samba, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 7.1
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-12151

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
2%
Низкий
почти 7 лет назад
redhat логотип
CVE-2017-12151

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
2%
Низкий
почти 8 лет назад
nvd логотип
CVE-2017-12151

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
2%
Низкий
почти 7 лет назад
debian логотип
CVE-2017-12151

A flaw was found in the way samba client before samba 4.4.16, samba 4. ...

CVSS3: 7.4
2%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2017-12163

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
19%
Средний
почти 7 лет назад
redhat логотип
CVE-2017-12163

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
19%
Средний
почти 8 лет назад
nvd логотип
CVE-2017-12163

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 4.1
19%
Средний
почти 7 лет назад
debian логотип
CVE-2017-12163

An information leak flaw was found in the way SMB1 protocol was implem ...

CVSS3: 4.1
19%
Средний
почти 7 лет назад
github логотип
GHSA-xc7p-hf9j-w53w

A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attacker to read or alter the contents of the connection via a man-in-the-middle attack.

CVSS3: 7.4
2%
Низкий
около 3 лет назад
fstec логотип
BDU:2019-00224

Уязвимость пакета программ для сетевого взаимодействия Samba, связанная с отсутствием требования подписи и шифрования SMB-трафика при использовании перенаправлений DFS, позволяющая нарушителю реализовать атаку «человек посередине»

CVSS3: 7.4
2%
Низкий
почти 8 лет назад
github логотип
GHSA-hvhw-9wrg-hf3q

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

CVSS3: 7.1
19%
Средний
около 3 лет назад
fstec логотип
BDU:2021-01433

Уязвимость реализации протокола SMB1 пакета программ сетевого взаимодействия Samba, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 7.1
19%
Средний
почти 7 лет назад

Уязвимостей на страницу