SMB4K
5 CVEs tracked since 2005. Since Sep 2005, none of them reached CISA KEV.
SMB4K CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2005-09 | 1 | 0 |
| 2005-10 | null or fewer | |
| 2005-11 | null or fewer | |
| 2005-12 | null or fewer | |
| 2006-01 | null or fewer | |
| 2006-02 | null or fewer | |
| 2006-03 | null or fewer | |
| 2006-04 | null or fewer | |
| 2006-05 | null or fewer | |
| 2006-06 | null or fewer | |
| 2006-07 | null or fewer | |
| 2006-08 | null or fewer | |
| 2006-09 | null or fewer | |
| 2006-10 | null or fewer | |
| 2006-11 | null or fewer | |
| 2006-12 | null or fewer | |
| 2007-01 | null or fewer | |
| 2007-02 | 4 | 0 |
Products
The products that kept showing up in SMB4K's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 5 most recently published vulnerabilities affecting SMB4K.
- CVE-2007-0475Multiple stack-based buffer overflows in utilities/smb4k_*.cpp in Smb4K before 0.8.0 allow local users, when present on the Smb4K sudoers list, to gain privileges via unspecified vectors related to...4.4
- CVE-2007-0474Smb4K before 0.8.0 allow local users, when present on the Smb4K sudoers list, to kill arbitrary processes, related to a "design issue with smb4k_kill."3.3
- CVE-2007-0473The writeFile function in core/smb4kfileio.cpp in Smb4K before 0.8.0 does not preserve /etc/sudoers permissions across modifications, which allows local users to obtain sensitive information (/etc/...1.9
- CVE-2007-0472Multiple race conditions in Smb4K before 0.8.0 allow local users to (1) modify arbitrary files via unspecified manipulations of Smb4K's lock file, which is not properly handled by the remove_lock_f...3.7
- CVE-2005-2851smb4k 0.4 and other versions before 0.6.3 allows local users to read sensitive files via a symlink attack on the (1) smb4k.tmp or (2) sudoers temporary files.2.1
The record
- Peak rank
- #25 in Feb 2007
- Busiest month shown
- Feb 2007, 4 CVEs
- Months with a KEV entry
- 0 since Sep 2005
- Monthly snapshots
- 2 since 2005