← Back

CVE-2023-0922

nvd nist
Published: Apr 3, 2023Modified: Jun 17, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.

Affected (7)

Products: Samba: Samba
1 product
Samba
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Samba
From 4.0.0 to 4.16.10
From 4.17.0 to 4.17.7
Version 4.18.0
Version 4.18.0 rc1
Version 4.18.0 rc2
Version 4.18.0 rc3
Version 4.18.0 rc4

References (8)

Timeline

No history available yet.