
CVE-2000-0936 – Samba 2.0.7 - SWAT Logfile Permissions
https://notcve.org/view.php?id=CVE-2000-0936
19 Dec 2000 — Samba Web Administration Tool (SWAT) in Samba 2.0.7 installs the cgi.log logging file with world readable permissions, which allows local users to read sensitive information such as user names and passwords. • https://www.exploit-db.com/exploits/20341 •

CVE-2000-0937 – Samba 2.0.7 - SWAT Logging Failure
https://notcve.org/view.php?id=CVE-2000-0937
19 Dec 2000 — Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks. • https://www.exploit-db.com/exploits/20340 •

CVE-2000-0938
https://notcve.org/view.php?id=CVE-2000-0938
19 Dec 2000 — Samba Web Administration Tool (SWAT) in Samba 2.0.7 supplies a different error message when a valid username is provided versus an invalid name, which allows remote attackers to identify valid users on the server. • http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html •

CVE-2000-0939
https://notcve.org/view.php?id=CVE-2000-0939
29 Nov 2000 — Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart. • http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html •

CVE-1999-0812
https://notcve.org/view.php?id=CVE-1999-0812
04 Jan 2000 — Race condition in Samba smbmnt allows local users to mount file systems in arbitrary locations. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0812 •

CVE-1999-0810
https://notcve.org/view.php?id=CVE-1999-0810
21 Jul 1999 — Denial of service in Samba NETBIOS name service daemon (nmbd). • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0810 •

CVE-1999-0811 – Samba < 2.0.5 - Local Overflow
https://notcve.org/view.php?id=CVE-1999-0811
21 Jul 1999 — Buffer overflow in Samba smbd program via a malformed message command. • https://www.exploit-db.com/exploits/19428 •

CVE-1999-1288
https://notcve.org/view.php?id=CVE-1999-1288
19 Nov 1998 — Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program. • http://www.caldera.com/support/security/advisories/SA-1998.35.txt •

CVE-1999-0182 – Samba 1.9.19 - 'Password' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0182
30 Sep 1997 — Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password. • https://www.exploit-db.com/exploits/20308 •