Researchers have discovered an Operating System Command Injection (
OS Command Injection) vulnerability (CVE-2025-10230) in Samba. If a user deploys a Samba AD Domain Controller server and enables WINS protocol support, an unauthenticated remote attacker can inject arbitrary operating system commands and execute them on the Samba server.