#VU58098 Improper access control in Samba - CVE-2016-2124
Published: November 10, 2021 / Updated: July 27, 2022
Samba
Samba
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to SMB1 client connections can be downgraded to plaintext authentication. A remote attacker can perform a man-in-the-middle attack and downgrade a negotiated SMB1 client connection and its capabitilities.