NetBIOS share has no access control

Risk Level: Medium risk vulnerability  Medium

Check or Attack Name: Open NetBIOS share

Platforms: Windows NT
Description:

A NetBIOS share was found with no access control list. The absence of an access control list permits attackers to access the shared resource (drive).

Remedy:

Correct the share permissions or remove the share.

To set the permissions, follow these steps:

  1. Navigate to the share in Windows Explorer.
  2. Right-click on the share, select Properties to display the Properties dialog box.
  3. From the Sharing tab, review the permissions.
  4. Allow access only to approved users.
  5. Click OK.

—OR—

To remove the share:

  1. Open a command line.
  2. From the Windows NT Start menu, select Run.
  3. Type cmd, then click OK to open the command line.
  4. Type: net share sharename /delete, where sharename is the name of the share.
  5. Type exit to return to the Windows NT desktop.

—OR—

From a remote host, remove the share:

  1. Open User Manager. From the Windows NT Start menu, select Programs, Administrative Tools (Common), User Manager.
  2. Select the host. From the Computer menu, select Shared Directories to display the Shared Directories dialog box.
  3. Select the share and click Stop Sharing.

In Security Scanner, this vulnerability is raised when the Windows generic file version checker detects a file that is not current.

References:

X-Force Logo
Know Your Risks