Lucene search

K
cveMitreCVE-2000-0936
HistoryJan 22, 2001 - 5:00 a.m.

CVE-2000-0936

2001-01-2205:00:00
mitre
web.nvd.nist.gov
24
samba
swat
cve-2000-0936
permissions
local users
sensitive information.

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

5.2%

Samba Web Administration Tool (SWAT) in Samba 2.0.7 installs the cgi.log logging file with world readable permissions, which allows local users to read sensitive information such as user names and passwords.

Affected configurations

Nvd
Node
sambasambaMatch2.0.7
VendorProductVersionCPE
sambasamba2.0.7cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

5.2%

Related for CVE-2000-0936