VYPR

luci-app-samba4

by Openwrt

CVEs (1)

  • CVE-2026-59260Jul 12, 2026
    risk 0.00cvss epss 0.01

    OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users to execute the Samba daemon with caller-controlled command-line arguments. Attackers can pass arbitrary Samba global options such as message command to a root…