{"api_version":"1","generated_at":"2026-07-23T10:14:00+00:00","cve":"CVE-2011-2694","urls":{"html":"https://cve.report/CVE-2011-2694","api":"https://cve.report/api/cve/CVE-2011-2694.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-2694","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-2694"},"summary":{"title":"CVE-2011-2694","description":"Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page).","state":"PUBLISHED","assigner":"redhat","published_at":"2011-07-29 20:55:02","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-79","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.6","severity":"","vector":"AV:N/AC:H/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=722537","name":"https://bugzilla.redhat.com/show_bug.cgi?id=722537","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Patch"],"title":"Bug 722537 – CVE-2011-2694 samba (SWAT): XSS flaw in Change Password page","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1025852","name":"http://securitytracker.com/id?1025852","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"SecurityTracker: Samba Web Administration Tool (SWAT) Input Validation Flaws Permit Cross-Site Request Forgery and Cross-Site Scripting Attacks","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/68844","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/68844","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/45393","name":"http://secunia.com/advisories/45393","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable","Vendor Advisory"],"title":"About Secunia Research | Flexera","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/48901","name":"http://www.securityfocus.com/bid/48901","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Samba SWAT 'user' Field Cross Site Scripting Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://osvdb.org/74072","name":"http://osvdb.org/74072","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://secunia.com/advisories/45496","name":"http://secunia.com/advisories/45496","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable","Third Party Advisory"],"title":"Ubuntu update for samba - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:121","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:121","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"mandriva.com","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"http://www.samba.org/samba/security/CVE-2011-2694","name":"http://www.samba.org/samba/security/CVE-2011-2694","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Samba - Security Announcement Archive","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://ubuntu.com/usn/usn-1182-1","name":"http://ubuntu.com/usn/usn-1182-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-1182-1: Samba vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://samba.org/samba/history/samba-3.5.10.html","name":"http://samba.org/samba/history/samba-3.5.10.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Samba - Release Notes Archive","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2011/dsa-2290","name":"http://www.debian.org/security/2011/dsa-2290","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Debian -- Security Information -- DSA-2290-1 samba","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.samba.org/show_bug.cgi?id=8289","name":"https://bugzilla.samba.org/show_bug.cgi?id=8289","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Issue Tracking","Patch"],"title":"Bug 8289 – Swat contains a cross-site scripting vulnerability; CVE-2011-2694","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://jvn.jp/en/jp/JVN63041502/index.html","name":"http://jvn.jp/en/jp/JVN63041502/index.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"JVN#63041502: Samba Web Administration Tool vulnerable to cross-site scripting","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/45488","name":"http://secunia.com/advisories/45488","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Not Applicable","Third Party Advisory"],"title":"Debian update for samba - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543","name":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-2694","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-2694","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"2694","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"samba","cpe5":"samba","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T23:08:23.785Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"MDVSA-2011:121","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:121"},{"name":"HPSBNS02701","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"name":"1025852","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1025852"},{"name":"JVN#63041502","tags":["third-party-advisory","x_refsource_JVN","x_transferred"],"url":"http://jvn.jp/en/jp/JVN63041502/index.html"},{"name":"DSA-2290","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2011/dsa-2290"},{"name":"74072","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/74072"},{"name":"45393","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45393"},{"name":"45496","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45496"},{"name":"45488","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45488"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://samba.org/samba/history/samba-3.5.10.html"},{"name":"48901","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/48901"},{"name":"SSRT100598","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.samba.org/show_bug.cgi?id=8289"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.samba.org/samba/security/CVE-2011-2694"},{"name":"USN-1182-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://ubuntu.com/usn/usn-1182-1"},{"name":"samba-user-xss(68844)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/68844"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=722537"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-07-26T00:00:00.000Z","descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page)."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-28T12:57:01.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"name":"MDVSA-2011:121","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:121"},{"name":"HPSBNS02701","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"name":"1025852","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1025852"},{"name":"JVN#63041502","tags":["third-party-advisory","x_refsource_JVN"],"url":"http://jvn.jp/en/jp/JVN63041502/index.html"},{"name":"DSA-2290","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2011/dsa-2290"},{"name":"74072","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/74072"},{"name":"45393","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45393"},{"name":"45496","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45496"},{"name":"45488","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45488"},{"tags":["x_refsource_CONFIRM"],"url":"http://samba.org/samba/history/samba-3.5.10.html"},{"name":"48901","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/48901"},{"name":"SSRT100598","tags":["vendor-advisory","x_refsource_HP"],"url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.samba.org/show_bug.cgi?id=8289"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.samba.org/samba/security/CVE-2011-2694"},{"name":"USN-1182-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://ubuntu.com/usn/usn-1182-1"},{"name":"samba-user-xss(68844)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/68844"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=722537"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"secalert@redhat.com","ID":"CVE-2011-2694","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page)."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"MDVSA-2011:121","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:121"},{"name":"HPSBNS02701","refsource":"HP","url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"name":"1025852","refsource":"SECTRACK","url":"http://securitytracker.com/id?1025852"},{"name":"JVN#63041502","refsource":"JVN","url":"http://jvn.jp/en/jp/JVN63041502/index.html"},{"name":"DSA-2290","refsource":"DEBIAN","url":"http://www.debian.org/security/2011/dsa-2290"},{"name":"74072","refsource":"OSVDB","url":"http://osvdb.org/74072"},{"name":"45393","refsource":"SECUNIA","url":"http://secunia.com/advisories/45393"},{"name":"45496","refsource":"SECUNIA","url":"http://secunia.com/advisories/45496"},{"name":"45488","refsource":"SECUNIA","url":"http://secunia.com/advisories/45488"},{"name":"http://samba.org/samba/history/samba-3.5.10.html","refsource":"CONFIRM","url":"http://samba.org/samba/history/samba-3.5.10.html"},{"name":"48901","refsource":"BID","url":"http://www.securityfocus.com/bid/48901"},{"name":"SSRT100598","refsource":"HP","url":"http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543"},{"name":"https://bugzilla.samba.org/show_bug.cgi?id=8289","refsource":"CONFIRM","url":"https://bugzilla.samba.org/show_bug.cgi?id=8289"},{"name":"http://www.samba.org/samba/security/CVE-2011-2694","refsource":"CONFIRM","url":"http://www.samba.org/samba/security/CVE-2011-2694"},{"name":"USN-1182-1","refsource":"UBUNTU","url":"http://ubuntu.com/usn/usn-1182-1"},{"name":"samba-user-xss(68844)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/68844"},{"name":"https://bugzilla.redhat.com/show_bug.cgi?id=722537","refsource":"CONFIRM","url":"https://bugzilla.redhat.com/show_bug.cgi?id=722537"}]}}}},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2011-2694","datePublished":"2011-07-29T20:00:00.000Z","dateReserved":"2011-07-11T00:00:00.000Z","dateUpdated":"2024-08-06T23:08:23.785Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-07-29 20:55:02","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-79","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:N/I:P/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*","versionStartIncluding":"3.0.0","versionEndExcluding":"3.3.16","matchCriteriaId":"3A7FE6F3-F8CF-46C6-94B8-2717A3BBA803"},{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*","versionStartIncluding":"3.4.0","versionEndExcluding":"3.4.14","matchCriteriaId":"5559D1ED-F753-4842-9F4A-F78C54817835"},{"vulnerable":true,"criteria":"cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*","versionStartIncluding":"3.5.0","versionEndExcluding":"3.5.10","matchCriteriaId":"7738DB4A-F424-481F-93C0-4C1DEBABAABD"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:-:*:*:*","matchCriteriaId":"7EBFE35C-E243-43D1-883D-4398D71763CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*","matchCriteriaId":"01EDA41C-6B2E-49AF-B503-EB3882265C11"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*","matchCriteriaId":"87614B58-24AB-49FB-9C84-E8DDBA16353B"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:11.04:*:*:*:*:*:*:*","matchCriteriaId":"EF49D26F-142E-468B-87C1-BABEA445255C"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*","matchCriteriaId":"8C757774-08E7-40AA-B532-6F705C8F7639"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*","matchCriteriaId":"036E8A89-7A16-411F-9D31-676313BB7244"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"16F59A04-14CF-49E2-9973-645477EA09DA"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"2694","Ordinal":"1","Title":"CVE-2011-2694","CVE":"CVE-2011-2694","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"2694","Ordinal":"1","NoteData":"Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page).","Type":"Description","Title":"CVE-2011-2694"},{"CveYear":"2011","CveId":"2694","Ordinal":"2","NoteData":"2011-07-29","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"2694","Ordinal":"3","NoteData":"2017-08-28","Type":"Other","Title":"Modified"}]}}}