CVE-2011-2522
Last modified
CVE-2011-2522 is a vulnerability of currently unknown severity. Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start daemons, (3) add shares, (4) remove shares, (5) add printers, (6) remove printers, (7) add user accounts, or (8) remove user accounts, as demonstrated by certain start, stop, and restart parameters to the status program.. EPSS estimates a 10.05% chance of exploitation in the next 30 days.
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start daemons, (3) add shares, (4) remove shares, (5) add printers, (6) remove printers, (7) add user accounts, or (8) remove user accounts, as demonstrated by certain start, stop, and restart parameters to the status program.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 3.0.0, < 3.3.16 |
| Samba | Samba | >= 3.4.0, < 3.4.14 |
| Samba | Samba | >= 3.5.0, < 3.5.10 |
| Debian | Debian Linux | 5.0 |
| Debian | Debian Linux | 6.0 |
| Debian | Debian Linux | 7.0 |
| Canonical | Ubuntu Linux | 8.04 |
| Canonical | Ubuntu Linux | 10.04 |
| Canonical | Ubuntu Linux | 10.10 |
| Canonical | Ubuntu Linux | 11.04 |
References
- http://jvn.jp/en/jp/JVN29529126/index.htmlThird Party Advisory
- http://marc.info/?l=bugtraq&m=133527864025056&w=2Mailing List, Third Party Advisory
- http://osvdb.org/74071Broken Link
- http://samba.org/samba/history/samba-3.5.10.htmlVendor Advisory
- http://secunia.com/advisories/45393Third Party Advisory
- http://secunia.com/advisories/45488Third Party Advisory
- http://secunia.com/advisories/45496Third Party Advisory
- http://securityreason.com/securityalert/8317Third Party Advisory
- http://securitytracker.com/id?1025852Third Party Advisory, VDB Entry
- http://ubuntu.com/usn/usn-1182-1Third Party Advisory
- http://www.debian.org/security/2011/dsa-2290Third Party Advisory
- http://www.exploit-db.com/exploits/17577Exploit, Third Party Advisory, VDB Entry
- http://www.samba.org/samba/security/CVE-2011-2522Vendor Advisory
- http://www.securityfocus.com/bid/48899Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=721348Issue Tracking, Patch, Third Party Advisory
- https://bugzilla.samba.org/show_bug.cgi?id=8290Issue Tracking, Patch, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68843Third Party Advisory, VDB Entry
- http://jvn.jp/en/jp/JVN29529126/index.htmlThird Party Advisory
- http://marc.info/?l=bugtraq&m=133527864025056&w=2Mailing List, Third Party Advisory
- http://osvdb.org/74071Broken Link
- http://samba.org/samba/history/samba-3.5.10.htmlVendor Advisory
- http://secunia.com/advisories/45393Third Party Advisory
- http://secunia.com/advisories/45488Third Party Advisory
- http://secunia.com/advisories/45496Third Party Advisory
- http://securityreason.com/securityalert/8317Third Party Advisory
- http://securitytracker.com/id?1025852Third Party Advisory, VDB Entry
- http://ubuntu.com/usn/usn-1182-1Third Party Advisory
- http://www.debian.org/security/2011/dsa-2290Third Party Advisory
- http://www.exploit-db.com/exploits/17577Exploit, Third Party Advisory, VDB Entry
- http://www.samba.org/samba/security/CVE-2011-2522Vendor Advisory
- http://www.securityfocus.com/bid/48899Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=721348Issue Tracking, Patch, Third Party Advisory
- https://bugzilla.samba.org/show_bug.cgi?id=8290Issue Tracking, Patch, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68843Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-2522?
How severe is CVE-2011-2522?
How do I fix CVE-2011-2522?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-2516Off-by-one error in the XML signature feature in Apache XML …
- CVE-2011-2517Multiple buffer overflows in net/wireless/nl80211.c in the L…
- CVE-2011-2518The tomoyo_mount_acl function in security/tomoyo/mount.c in …
- CVE-2011-2519Xen in the Linux kernel, when running a guest on a host with…
- CVE-2011-2520fw_dbus.py in system-config-firewall 1.2.29 and earlier uses…7.8
- CVE-2011-2521The x86_assign_hw_event function in arch/x86/kernel/cpu/perf…
- CVE-2011-2523vsftpd 2.3.4 downloaded between 20110630 and 20110703 contai…9.8
- CVE-2011-2524Directory traversal vulnerability in soup-uri.c in SoupServe…
- CVE-2011-2525The qdisc_notify function in net/sched/sch_api.c in the Linu…7.8
- CVE-2011-2526Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.…
- CVE-2011-2527The change_process_uid function in os-posix.c in Qemu 0.14.0…
- CVE-2011-2528Unspecified vulnerability in (1) Zope 2.12.x before 2.12.19 …
Are you affected by CVE-2011-2522?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
