SFTP Supported

info Nessus Plugin ID 72663

Synopsis

The remote SSH service supports SFTP.

Description

The remote SSH service supports the SFTP subsystem. SFTP is a protocol for generalized file access, file transfer, and file management functionalities, typically over SSH.

Note that valid credentials are required to determine if SFTP is supported and also that SFTP support can be enabled selectively for certain accounts. Nessus will check each credential supplied in the current scan policy for SFTP support. If the scan is not restricted to supplied logins, it will also try 'guest' and 'anonymous'.

Solution

Make sure that use of this facility agrees with your organization's acceptable use and security policies.

See Also

https://en.wikipedia.org/wiki/SSH_File_Transfer_Protocol

Plugin Details

Severity: Info

ID: 72663

File Name: sftp_detect.nasl

Version: 1.10

Type: remote

Family: General

Published: 2/24/2014

Updated: 7/24/2024

Configuration: Enable thorough checks

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

Excluded KB Items: global_settings/supplied_logins_only