Back to search
CVE-2001-0981
Published: Jun 25, 2002
Modified: Aug 8, 2024
PUBLISHED
Description
HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program without specifying the username of the user making the request, which could cause the server to change the password of a different user.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
hp-cifs-change-passwords(7051)
vdb-entry
x_refsource_XF
HPSBUX0108-164
vendor-advisory
x_refsource_HP
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now