⚡ Get unlimited AI threat intel — exploit-db.ai →
CRITICAL

CVE-2017-7494

⚡ Llama-3 AI Analysis

Executive Briefing

SambaCry: Unauthenticated RCE via shared library upload on writable Samba shares — EternalBlue equivalent for Linux/NAS devices. Update Samba to 4.6.4+. Set noexec on all Samba shares as compensating control. Widely exploited by Mirai variants targeting NAS devices.

NVD Description

Samba since version 3.5.0 and before 4.6.4, 4.5.10, 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute it. SambaCry.

Want alerts for CVEs like this?

Exploit-DB.ai delivers real-time AI-triaged zero-day alerts directly to your inbox.

Activate Supernova →

Official Sources