Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-64644
HistoryJul 27, 2023 - 12:00 a.m.

Samba Information Disclosure Vulnerability (CNVD-2023-64644)

2023-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
19
samba
vulnerability
information disclosure
server-side path
sensitive information

EPSS

0.002

Percentile

54.5%

Samba is the standard Windows interoperability program suite for Linux and Unix. Samba suffers from an information disclosure vulnerability. The vulnerability stems from Samba returning the path to the real server-side share at this point, as well as returning the server-side path to the result of an absolute value client search query. An attacker could exploit this vulnerability to obtain sensitive information.