peter bassill · operator
$ cve CVE-2007-2447 JSON

CVE-2007-2447 EXPLOIT

6.0
MEDIUM · CVSS 2.0 · EPSS 49.8% (pctl 99)

Patch early

A public exploit exists.

Description

The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands via shell metacharacters involving the (1) SamrChangePassword function, when the "username map script" smb.conf option is enabled, and allows remote authenticated users to execute commands via shell metacharacters involving other MS-RPC functions in the (2) remote printer and (3) file share management.

Scoring

CVSS6.0 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:S/C:P/I:P/A:P
EPSS49.76% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2007-05-14
Last modified2026-06-16

Affected (1)

VendorProduct
sambasamba

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD