Permissions, Privileges, and Access Controls in Samba - CVE-2013-1863
Published: March 19, 2013 / Updated: August 11, 2020
Samba
Detailed vulnerability description
The vulnerability allows a remote #AU# to read and manipulate data.
Samba 4.x before 4.0.4, when configured as an Active Directory domain controller, uses world-writable permissions on non-default CIFS shares, which allows remote authenticated users to read, modify, create, or delete arbitrary files via standard filesystem operations.