Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 26

Количество 26

oracle-oval логотип

ELSA-2026-28132

около 2 месяцев назад

ELSA-2026-28132: samba security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22644

4 месяца назад

ELSA-2026-22644: samba security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2108-1

4 месяца назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2073-1

4 месяца назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2074-1

4 месяца назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2072-1

4 месяца назад

Security update for samba

EPSS: Низкий
rocky логотип

RLSA-2026:22644

3 месяца назад

Important: samba security update

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20905-1

3 месяца назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2076-1

4 месяца назад

Security update for samba

EPSS: Низкий
rocky логотип

RLSA-2026:25049

3 месяца назад

Critical: samba security update

EPSS: Низкий
rocky логотип

RLSA-2026:22963

3 месяца назад

Critical: samba security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25049

3 месяца назад

ELSA-2026-25049: samba security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22963

2 месяца назад

ELSA-2026-22963: samba security update (CRITICAL)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21540-1

около 1 месяца назад

Security update for samba

EPSS: Низкий
ubuntu логотип

CVE-2026-4480

4 месяца назад

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
EPSS: Средний
redhat логотип

CVE-2026-4480

4 месяца назад

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
EPSS: Средний
nvd логотип

CVE-2026-4480

4 месяца назад

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
EPSS: Средний
debian логотип

CVE-2026-4480

4 месяца назад

A flaw was found in the Samba printing subsystem. Samba passes the cli ...

CVSS3: 9
EPSS: Средний
ubuntu логотип

CVE-2026-4408

4 месяца назад

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execution on the affected system. This issue primarily affects non-standard configurations where the "check password script" is used with %u and the samba-dcerpcd service is started as a system service.

CVSS3: 9
EPSS: Низкий
redhat логотип

CVE-2026-4408

4 месяца назад

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execution on the affected system. This issue primarily affects non-standard configurations where the "check password script" is used with %u and the samba-dcerpcd service is started as a system service.

CVSS3: 9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2026-28132

ELSA-2026-28132: samba security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-22644

ELSA-2026-22644: samba security update (IMPORTANT)

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2108-1

Security update for samba

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2073-1

Security update for samba

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2074-1

Security update for samba

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2072-1

Security update for samba

4 месяца назад
rocky логотип
RLSA-2026:22644

Important: samba security update

3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20905-1

Security update for samba

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2076-1

Security update for samba

4 месяца назад
rocky логотип
RLSA-2026:25049

Critical: samba security update

3 месяца назад
rocky логотип
RLSA-2026:22963

Critical: samba security update

3 месяца назад
oracle-oval логотип
ELSA-2026-25049

ELSA-2026-25049: samba security update (CRITICAL)

3 месяца назад
oracle-oval логотип
ELSA-2026-22963

ELSA-2026-22963: samba security update (CRITICAL)

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21540-1

Security update for samba

около 1 месяца назад
ubuntu логотип
CVE-2026-4480

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
14%
Средний
4 месяца назад
redhat логотип
CVE-2026-4480

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
14%
Средний
4 месяца назад
nvd логотип
CVE-2026-4480

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

CVSS3: 9
14%
Средний
4 месяца назад
debian логотип
CVE-2026-4480

A flaw was found in the Samba printing subsystem. Samba passes the cli ...

CVSS3: 9
14%
Средний
4 месяца назад
ubuntu логотип
CVE-2026-4408

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execution on the affected system. This issue primarily affects non-standard configurations where the "check password script" is used with %u and the samba-dcerpcd service is started as a system service.

CVSS3: 9
3%
Низкий
4 месяца назад
redhat логотип
CVE-2026-4408

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execution on the affected system. This issue primarily affects non-standard configurations where the "check password script" is used with %u and the samba-dcerpcd service is started as a system service.

CVSS3: 9
3%
Низкий
4 месяца назад

Уязвимостей на страницу