Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2001-0406

17
FAUCET Score

CVE-2001-0406 describes a local privilege escalation vulnerability in Samba versions prior to 2.2.0. Attackers can exploit this flaw through a symlink attack, specifically via printer queue queries or the 'more' and 'mput' commands in smbclient, to overwrite arbitrary files on the system. The vulnerability has a low CVSS score of 2.1 (AV:L/AC:L/Au:N/C:N/I:P/A:N), indicating local access, low attack complexity, and a potential impact of partial integrity compromise. While there is an ExploitDB entry (EDB-20776) detailing a similar insecure TMP file symbolic link, there is no evidence of active exploitation, Metasploit or Nuclei modules, or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.0.7CPE matchmatch criteria
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

2.1LOW

AV:L/AC:L/Au:N/C:N/I:P/A:N

Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
2.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
1.14%
Probability of exploitation in next 30 days
EPSS Percentile
63.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-20776 · Apr 17, 2001
This CVE's current EPSS score of 0.0114 is in the 93rd percentile among its peer group of 2,096 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (5)

debianpatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Linux 5.2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Linux 6.2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Linux 7.0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Linux 7.1
View patch

Vendor Advisories (1)

redhatCVE-2001-0406

security flaw

Apr 17, 2001

References

archives.neohapsis.com / archives/bugtraq/2001-04/0305.html
PatchVendor Advisory
archives.neohapsis.com / archives/bugtraq/2001-04/0319.html
PatchVendor Advisory
archives.neohapsis.com / archives/bugtraq/2001-04/0326.html
PatchVendor Advisory
archives.neohapsis.com / archives/freebsd/2001-04/0608.html
distro.conectiva.com.br / atualizacoes
caldera.com / support/security/advisories/CSSA-2001-015.0.txt
PatchVendor Advisory
debian.org / security/2001/dsa-048
PatchVendor Advisory
kb.cert.org / vuls/id/670568
US Government Resource
linux-mandrake.com / en/security/2001/MDKSA-2001-040.php3
securityfocus.com / bid/2617