Back

CVE-2001-1162

Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.

Published: Jun 23, 2001 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (8)

Vendor Product Version
samba samba 2.0.5
samba samba 2.0.6
samba samba 2.0.7
samba samba 2.0.8
samba samba 2.0.9
samba samba 2.2.0
hp cifs-9000_server a.01.05
hp cifs-9000_server a.01.06

GitHub Security Advisory GHSA-8wh4-jc8q-39g3

Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 12.03%

Top 4% most likely to be exploited

Threat Score 43.6 / 100

Data Sources

NVD EPSS GitHub