Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start daemons, (3) add shares, (4) remove shares, (5) add printers, (6) remove printers, (7) add user accounts, or (8) remove user accounts, as demonstrated by certain start, stop, and restart parameters to the status program.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 3.0.0, < 3.3.16 |
| Debian | Debian Linux | 5.0 |
| Canonical | Ubuntu Linux | 8.04 |
Related Weaknesses (CWE)
References
- http://jvn.jp/en/jp/JVN29529126/index.htmlThird Party Advisory
- http://marc.info/?l=bugtraq&m=133527864025056&w=2Mailing ListThird Party Advisory
- http://osvdb.org/74071Broken Link
- http://samba.org/samba/history/samba-3.5.10.htmlVendor Advisory
- http://secunia.com/advisories/45393Third Party Advisory
- http://secunia.com/advisories/45488Third Party Advisory
- http://secunia.com/advisories/45496Third Party Advisory
- http://securityreason.com/securityalert/8317Third Party Advisory
- http://securitytracker.com/id?1025852Third Party AdvisoryVDB Entry
- http://ubuntu.com/usn/usn-1182-1Third Party Advisory
- http://www.debian.org/security/2011/dsa-2290Third Party Advisory
- http://www.exploit-db.com/exploits/17577ExploitThird Party AdvisoryVDB Entry
- http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543Broken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:121Broken Link
- http://www.samba.org/samba/security/CVE-2011-2522Vendor Advisory
FAQ
What is CVE-2011-2522?
CVE-2011-2522 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators ...
How severe is CVE-2011-2522?
CVE-2011-2522 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-2522?
Check the references section above for vendor advisories and patch information. Affected products include: Samba Samba, Debian Debian Linux, Canonical Ubuntu Linux.