Synopsis
It is possible to enumerate remote services.
Description
This plugin implements the SvcOpenSCManager() and SvcEnumServices() calls to obtain, using the SMB protocol, the list of active and inactive services of the remote host.
An attacker may use this feature to gain better knowledge of the remote host.
Solution
To prevent the listing of the services from being obtained, you should either have tight login restrictions, so that only trusted users can access your host, and/or you should filter incoming traffic to this port.
Plugin Details
File Name: smb_enum_services.nasl
Agent: windows
Supported Sensors: Nessus Agent, Nessus
Vulnerability Information
CPE: cpe:/o:microsoft:windows
Required KB Items: SMB/name, SMB/login, SMB/password, SMB/transport
Excluded KB Items: SMB/not_windows