CVE-2013-0454: The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.
infovulnerability
security
Summary
A security flaw in Samba 3.6.x (a software that allows file sharing between computers) before version 3.6.6 fails to properly enforce SMB2 share attributes (settings that control how network shares behave). This allows authenticated users (those with valid login credentials) to write to shares marked as read-only, cause data integrity issues with file locking mechanisms, or exploit incorrect handling of visibility settings.
Vulnerability Details
CVSS Score
4
EPSS (30-day exploit probability)
EPSS: 1.9%
Classification
Attack SophisticationModerate
Taxonomy References
CWE (Weakness Type)
Original source: https://nvd.nist.gov/vuln/detail/CVE-2013-0454
First tracked: February 15, 2026 at 08:52 PM
Classified by LLM (prompt v3) · confidence: 95%