|
Family: Remote file access --> Category: infos
User Mountable NFS shares Vulnerability Scan
Vulnerability Scan Summary Checks for User Mountable NFS
Detailed Explanation for this Vulnerability Test
Synopsis :
It is possible to access the remote NFS shares without having root rights.
Description :
Some of the NFS shares exported by the remote server could be
mounted by the scanning host. A possible hacker may exploit this problem
to gain read (and possibly write) access to files on remote host.
Note that root rights were not required to mount the remote shares. That is,
the source port to mount the shares was bigger than 1024.
Solution :
Configure NFS on the remote host so that only authorized hosts can mount
the remote shares.
The remote NFS server should prevent mount requests originating from a non-privileged port.
Threat Level:
Medium / CVSS Base Score : 5
(AV:R/AC:L/Au:NR/C:P/A:N/I:P/B:C)
Click HERE for more information and discussions on this network vulnerability scan.
|