Profelis SambaBox OS Command Injection Vulnerability

Vulnerability

A code injection vulnerability allowing operating system command injection has been identified in Profelis SambaBox versions 5.1 prior to 5.3. This vulnerability could be exploited by cyber attackers to execute arbitrary commands on the server's operating system.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of operating system commands, potentially allowing an attacker to manipulate the server environment or access sensitive information.

Remediation

Users are advised to upgrade to at least version 5.3 of SambaBox.

Added: May 4, 2026, 12:19 PM
Updated: May 4, 2026, 12:19 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
7.4
remediation
0.0
relevance
7.4
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.