SSI A.I CyberSecurity Scoring
SSI
Company Information
Website:https://www.sambainc.com/
Employees number:17
Number of followers:0
NAICS:3344
Industry Type:Semiconductor Manufacturing
Homepage:sambainc.com
SSI Risk Score (AI oriented)
Between 800 and 849
SSISemiconductor Manufacturing
Updated:
29/05/2026
29/05/2026
805/1000
Good
A
SSI Global Score (TPRM)
xxxx
SSISemiconductor Manufacturing
Score locked

SSIGood
Current Score
805A (GOOD)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
805
JUNE 2026
805
MAY 2026
808
Vulnerability
29 May 2026 • SSI
Samba: Critical Samba Vulnerability Enables Remote Code Execution
Critical Samba Vulnerability (CVE-2026-4480) Enables Unauthenticated Remote Code Execution
805
CRITICAL-3
SAM1780043088
Critical Samba Vulnerability (CVE-2026-4480) Enables Unauthenticated Remote Code Execution
A maximum-severity flaw (CVE-2026-4480, CVSS 10.0) has been discovered in Samba’s printing subsystem, allowing unauthenticated remote attackers to execute arbitrary commands on vulnerable servers. The vulnerability stems from improper handling of the `%J` substitution character in Samba’s print command configuration, which fails to sanitize shell metacharacters in client-controlled job descriptions.
Exploiting the flaw requires no credentials, as Samba print servers permit guest printing by default. Attackers with network access can achieve full remote code execution (RCE) without user interaction, posing a severe risk to enterprise environments where Samba is commonly deployed as a Windows-compatible print server on Linux/Unix systems.
Affected Systems & Mitigations
The flaw impacts all Samba versions where the `print command` setting includes `%J` without proper escaping. Servers using `printing = cups` or `printing = iprint` are unaffected, as are those that omit `%J` entirely. Partial mitigation is possible by wrapping `%J` in single quotes (`'%J'`), though this does not eliminate all risks.
The Samba team has released patches in three stable versions:
- Samba 4.22.10
- Samba 4.23.8
- Samba 4.24.3
For immediate protection, administrators are advised to upgrade or apply workarounds, such as removing `%J` from the print command or restricting guest printing access. The vulnerability was addressed by developers Stefan Metzmacher and Douglas Bagnall, with the flaw’s unauthenticated nature and Samba’s widespread use underscoring the urgency of patching.
INCIDENT DETAILS -
TYPE
IMPACT
REFERENCES
APRIL 2026
808
MARCH 2026
808
FEBRUARY 2026
808
JANUARY 2026
808
DECEMBER 2025
808
NOVEMBER 2025
808
OCTOBER 2025
808
SEPTEMBER 2025
808
AUGUST 2025
808
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for SSI ??
What was SSI's A.I Rankiteo Cyber Score in June 2026 ??
What was SSI's A.I Rankiteo Cyber Score in May 2026 ??
What was SSI's A.I Rankiteo Cyber Score in April 2026 ??
What was SSI's A.I Rankiteo Cyber Score in March 2026 ??
What was SSI's A.I Rankiteo Cyber Score in February 2026 ??
What was SSI's A.I Rankiteo Cyber Score in January 2026 ??
What was SSI's A.I Rankiteo Cyber Score in December 2025 ??
What was SSI's A.I Rankiteo Cyber Score in November 2025 ??
What was SSI's A.I Rankiteo Cyber Score in October 2025 ??
What was SSI's A.I Rankiteo Cyber Score in September 2025 ??
What was SSI's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on SSI's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with SSI ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view SSI's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?