peter bassill · operator
$ cve CVE-2000-0937 JSON

CVE-2000-0937 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 7.7% (pctl 94)

Patch early

A public exploit exists.

Description

Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS7.74% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2000-12-19
Last modified2026-06-16

Affected (1)

VendorProduct
sambasamba

Public exploits

SourceTitleDate
exploit-dbSamba 2.0.7 - SWAT Logging Failure2000-11-01

References

→ the Explorer  ·  watch your stack  ·  NVD