?
Solved

NFS Improper UID & NFS Exported Share Read Access

Posted on 2016-11-02
7
Medium Priority
?
116 Views
Last Modified: 2016-11-18
These 2 items show up on my vulnerability scan of my HP Laser Jet p3015

Can someone please explain them to me  and if they can be shut off
0
Comment
Question by:syarmush
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
7 Comments
 
LVL 62

Expert Comment

by:gheist
ID: 41875644
What items?
0
 

Author Comment

by:syarmush
ID: 41877466
NFS Improper UID & NFS Exported Share Read Access
0
 
LVL 62

Expert Comment

by:gheist
ID: 41877597
Can you post them one per paragraph with full text of finding/test?
0
Bringing Advanced Authentication to the SMB Market

WatchGuard announces the acquisition of advanced authentication provider, Datablink, with one mission – to bring secure authentication to SMB, mid-market, and distributed enterprises with a cloud-based solution, ideal for resale via their established channel & MSSP community.

 

Author Comment

by:syarmush
ID: 41877897
The remote system is running an NFS server which is configured
in such a way that it allows unauthenticated users to manipulate
the file system using unverified credentials. This can be
accomplished by spoofing the user ID (UID) and group ID (GID)
values in NFS RPC call packets.
Impact:
An unauthenticated network-based attacker can leverage this
misconfiguration issue to access and modify sensitive files that
are present on the remote system with super user privileges. This
level of access typically results in a complete compromise of the
vulnerable system.
Solution: If the NFS service is not necessary or is not being used, disable
the service. Alternatively, if the service is relied on, the issue may
be resolved either by implementing an authentication scheme
0
 
LVL 62

Accepted Solution

by:
gheist earned 2000 total points
ID: 41882834
Easiest would be to disable NFS server (telnet to IP of JetDirect, type 'help', and look for disabling NFS printing)
0
 

Author Comment

by:syarmush
ID: 41890574
what is NFS printing?
0
 
LVL 62

Expert Comment

by:gheist
ID: 41893382
Some non-standard HP protocol. Probably you upload text files and images and printer prints them...
0

Featured Post

2017 Webroot Threat Report

MSPs: Get the facts you need to protect your clients.
The 2017 Webroot Threat Report provides a uniquely insightful global view into the analysis and discoveries made by the Webroot® Threat Intelligence Platform to provide insights on key trends and risks as seen by our users.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you thought ransomware was bad, think again! Doxware has the potential to be even more damaging.
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
In an interesting question (https://www.experts-exchange.com/questions/29008360/) here at Experts Exchange, a member asked how to split a single image into multiple images. The primary usage for this is to place many photographs on a flatbed scanner…
This video Micro Tutorial shows how to password-protect PDF files with free software. Many software products can do this, such as Adobe Acrobat (but not Adobe Reader), Nuance PaperPort, and Nuance Power PDF, but they are not free products. This vide…
Suggested Courses

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question