CVE-2025-10230

Samba WINS Command Injection Vulnerability (CVE-2025-10230) Notice

outubro 17, 2025

Overview Recently, NSFOCUS CERT detected that Samba released a security update to fix the Samba WINS command injection vulnerability (CVE-2025-10230); Since WINS when Samba is used as an AD domain controller does not strictly verify the wins hook script command when processing registration messages, unauthenticated attackers can construct a special host name to inject commands […]

Search

Inscreva-se no Blog da NSFOCUS