CVE-2020-25722
8.8
HIGH
CVSS 3.1
EPSS 1.6%
Description
Multiple flaws were found in the way samba AD DC implemented access and conformance checking of stored data. An attacker could use this flaw to cause total domain compromise.
How to fix CVE-2020-25722
To remediate CVE-2020-25722, upgrade the affected package to a fixed version below.
- Alpine/samba—upgrade to 4.13.17-r0 or later
Is CVE-2020-25722 being exploited?
Low — EPSS is 1.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- >= 4.0.0, < 4.13.17-r0
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH8.8 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |