netbios smb software vulnerabilities
vulnerabilities.aspcode.net
Searching netbios smb software vulnerabilities
A remote attacker can gain access to a file sys
attacker
|
system
|
access
|
remote
|
using
|
file
|
gain
|
can
|
A remote attacker can gain access to a file system using .. (dot dot) when accessing SMB shares.
NETBIOS share information may be published thro
information
|
published
|
registry
|
through
|
NETBIOS
|
share
|
keys
|
SNMP
|
may
|
NETBIOS share information may be published through SNMP registry keys in NT.
A NETBIOS/SMB share password is the default, nu
NETBIOS/SMB
|
password
|
missing
|
default
|
share
|
null
|
A NETBIOS/SMB share password is the default, null, or missing.
A system-critical NETBIOS/SMB share has inappro
system-critical
|
inappropriate
|
NETBIOS/SMB
|
control
|
access
|
share
|
has
|
A system-critical NETBIOS/SMB share has inappropriate access control.
A component service related to NETBIOS is runni
component
|
NETBIOS
|
running
|
service
|
related
|
A component service related to NETBIOS is running.
Interactions between the CIFS Browser Protocol
Interactions
|
implemented
|
Microsoft
|
Protocol
|
Windows
|
between
|
Browser
|
NetBIOS
|
CIFS
|
Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote attackers to modify dynamic NetBIOS name cache entries via a spoofed Browse Frame Request in a unicast or UDP broadcast datagram.
EFTP 2.0.7.337 allows remote attackers to obtai
EFTP
|
EFTP 2.0.7.337 allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.
Microsoft Windows 2000 allows remote attackers
Microsoft
|
Windows
|
Microsoft Windows 2000 allows remote attackers to cause a denial of service (memory consumption) by sending a flood of empty TCP/IP packets with the ACK and FIN bits set to the NetBIOS port (TCP/139), as demonstrated by stream3.
RFC-NETBIOS in HP Advanced Server/9000 B.04.05
Server/9000
|
RFC-NETBIOS
|
Advanced
|
through
|
running
|
HP-UX
|
B0405
|
B0409
|
RFC-NETBIOS in HP Advanced Server/9000 B.04.05 through B.04.09, when running HP-UX 11.00 or 11.11, allows remote attackers to cause a denial of sevrice (panic) via a malformed UDP packet on port 139.
Buffer overflow in the SMB/CIFS packet fragment
re-assembly
|
fragment
|
SMB/CIFS
|
overflow
|
daemon
|
Buffer
|
packet
|
code
|
SMB
|
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.
Buffer overflow in the SMB capability for Micro
capability
|
Microsoft
|
overflow
|
Windows
|
Buffer
|
SMB
|
Buffer overflow in the SMB capability for Microsoft Windows XP, 2000, and NT allows remote attackers to cause a denial of service and possibly execute arbitrary code via an SMB packet that specifies a smaller buffer length than is required.
The NetBT Name Service (NBNS) for NetBIOS in Wi
Service
|
NetBT
|
Name
|
The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS query, which could allow remote attackers to obtain sensitive information.
Buffer overflow in PAM SMB module (pam_smb) 1.1
overflow
|
module
|
Buffer
|
SMB
|
PAM
|
Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code.
Stack-based buffer overflow in SMB_Logon_Server
SMB_Logon_Server
|
experimental
|
Stack-based
|
FreeRADIUS
|
overflow
|
rlm_smb
|
buffer
|
module
|
Stack-based buffer overflow in SMB_Logon_Server of the rlm_smb experimental module for FreeRADIUS 0.9.3 and earlier allows remote attackers to execute arbitrary code via a long User-Password attribute.
The SMB dissector in Ethereal before 0.10.0 all
dissector
|
Ethereal
|
before
|
SMB
|
The SMB dissector in Ethereal before 0.10.0 allows remote attackers to cause a denial of service via a malformed SMB packet that triggers a segmentation fault during processing of Selected packets.
Multiple vulnerabilities in the samba filesyste
vulnerabilities
|
filesystem
|
Multiple
|
samba
|
Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from outside the samba packet to the smb_proc_readX function, (3) sending a certain TRANS2 fragmented packet to the smb_receive_trans2 function, (4) sending a samba packet with a certain header size to the smb_proc_readX_data function, or (5) sending a certain packet based offset for the data in a packet to the smb_receive_trans2 function.
Microsoft ISA Server 2000 allows remote attacke
Microsoft
|
Server
|
ISA
|
Microsoft ISA Server 2000 allows remote attackers to connect to services utilizing the NetBIOS protocol via a NetBIOS connection with an ISA Server that uses the NetBIOS (all) predefined packet filter.
Multiple unknown vulnerabilities in the (1) WSP
vulnerabilities
|
Multiple
|
unknown
|
Multiple unknown vulnerabilities in the (1) WSP, (2) BER, (3) SMB, (4) NDPS, (5) IAX2, (6) RADIUS, (7) TCAP, (8) MRDISC, (9) 802.3 Slow, (10) SMBMailslot, or (11) SMB PIPE dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (assert error).
Ethereal 0.10.12 and earlier allows remote atta
Ethereal
|
Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled.
The Server Service (SRV.SYS driver) in Microsof
Service
|
Server
|
The Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to obtain sensitive information via crafted requests that leak information in SMB buffers, which are not properly initialized, aka "SMB Information Disclosure Vulnerability."
Software vulnerabilities results 1 to 20 of 66
Page:
1
2
3
4
►