NFS Improper UID & NFS Exported Share Read Access

These 2 items show up on my vulnerability scan of my HP Laser Jet p3015

Can someone please explain them to me  and if they can be shut off
syarmushAsked:
Who is Participating?

[Webinar] Streamline your web hosting managementRegister Today

x
 
gheistConnect With a Mentor Commented:
Easiest would be to disable NFS server (telnet to IP of JetDirect, type 'help', and look for disabling NFS printing)
0
 
gheistCommented:
What items?
0
 
syarmushAuthor Commented:
NFS Improper UID & NFS Exported Share Read Access
0
Will You Be GDPR Compliant by 5/28/2018?

GDPR? That's a regulation for the European Union. But, if you collect data from customers or employees within the EU, then you need to know about GDPR and make sure your organization is compliant by May 2018. Check out our preparation checklist to make sure you're on track today!

 
gheistCommented:
Can you post them one per paragraph with full text of finding/test?
0
 
syarmushAuthor Commented:
The remote system is running an NFS server which is configured
in such a way that it allows unauthenticated users to manipulate
the file system using unverified credentials. This can be
accomplished by spoofing the user ID (UID) and group ID (GID)
values in NFS RPC call packets.
Impact:
An unauthenticated network-based attacker can leverage this
misconfiguration issue to access and modify sensitive files that
are present on the remote system with super user privileges. This
level of access typically results in a complete compromise of the
vulnerable system.
Solution: If the NFS service is not necessary or is not being used, disable
the service. Alternatively, if the service is relied on, the issue may
be resolved either by implementing an authentication scheme
0
 
syarmushAuthor Commented:
what is NFS printing?
0
 
gheistCommented:
Some non-standard HP protocol. Probably you upload text files and images and printer prints them...
0
All Courses

From novice to tech pro — start learning today.