Loading vulnerability details…
CVSS v3.1
10.0
EPSS
2.66%
Published
Mar 25, 2022
Modified
Nov 3, 2025
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The combination of primitives offered by SMB and AFP in their default configuration allows the arbitrary writing of files. By exploiting these combination of primitives, an attacker can execute arbitrary code.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:LWeaknesses (CWE)
Affected Products (26)
References (13)