AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-3592

MEDIUM · CVSS 6.5 EPSS 2.43%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-01-12 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It may be remotely exploitable.

CVE
CVE-2022-3592
Severity
MEDIUM
CVSS
6.5
EPSS
2.43%

Original NVD Description

A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' escape the configured share path. This flaw allows a remote user with access to the exported part of the file system under a share via SMB1 unix extensions or NFS to create symlinks to files outside the 'smbd' configured share path and gain access to another restricted server's filesystem.

Related CVEs

Other vulnerabilities affecting the same vendor(s)