THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-1933 (HIGH 7.1) — A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point metadata through SMB operations

[NVD] CVE-2026-1933 (HIGH 7.1) — A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point metadata through SMB operations

lownvdPublished 2026-05-27

CVE-2026-1933 CVSS: 7.1 HIGH Published: 2026-05-27T14:16:44.023

A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point metadata through SMB operations even on read-only exports. This could allow modificati

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-1933