CVE-2016-2124
—CVSS 3.1
5.9 medium
EPSS
2%p77
Published
()
Modified
Description
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
- Vendors
- sambadebianfedoraprojectredhatcanonical
- Products
- samba, debian linux, fedora, codeready linux builder, gluster storage, openstack, virtualization host, enterprise linux, enterprise linux desktop, enterprise linux eus, enterprise linux for ibm z systems, enterprise linux for ibm z systems eus
- Weakness
- CWE-287
- Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.