Can a NAS (Network Attachment) be hack via guest account using CIFS protocol?

NASSMB
NASSMB used Ask the Experts™
on
I have a NAS (Linus based file system) and my log indicated a guy from ChinaNet successfully hacked to my NAS with a guest account and get all my username/password account. That person frequently visited back to my NAS with the accounts he got (Failed as I already know).  I don't have any personal file, just music and some movies.

I have SSH enabled and tested with guest account. (it failed), however, CIFS connection with guest account allowed to see the folders tree from my NAS. How is this guy do this ? Anyone can show me to understand his concept of hacking. I will appreciated your expertise. I know how to stop him. Is anyone here experience this problem ?
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Commented:
Too late to contain, but good you learned a lesson exposing only non-valuable data.
Anyone concerned with security would disable guest access completely as
you never know how it may be exploited.  Too bad these products ship to
non-expert consumers with guest enabled by default.

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial