Samba.Arbitrary.Command.Injection

description-logoDescription

This indicates an attempt to exploit an input validation error in in Samba server.
The MS-RPC functionality in smbd, part of Samba server, fails to properly validate user supplied parameters. This vulnerability can be exploited by remote attackers to inject and execute arbitrary shell commands. The vulnerable function is "_AddPrinterW" in Samba 3. It can be reached through an "AddPrinter" remote request.

affected-products-logoAffected Products

Samba versions 3.0.0 through 3.0.25rc3.

Impact logoImpact

System compromise: arbitrary command execution.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)