CVE-2001-1162

Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.8:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.9:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.2.0:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:hp:cifs-9000_server:a.01.05:*:*:*:*:*:*:*
cpe:2.3:a:hp:cifs-9000_server:a.01.06:*:*:*:*:*:*:*

History

No history.

Information

Published : 2001-06-23 04:00

Updated : 2024-02-04 16:31


NVD link : CVE-2001-1162

Mitre link : CVE-2001-1162

CVE.ORG link : CVE-2001-1162


JSON object : View

Products Affected

hp

  • cifs-9000_server

samba

  • samba