← back
CVE-2026-4480criticalobserved exploitationCWE-78

Samba: samba: remote code execution in printing subsystem via unescaped job description

92Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 9epss 14%
from disclosure to weapon10 days
Published on NVDMay 26
1st PoC+10d
VulnCheck+55d
exploitation probability
14%top 4% of all CVEs
observed exploitation
yesVulnCheck
13 public exploit(s)
A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.