NetBIOS permutations attack vulnerability |
---|
Risk Level: | High | Check or Attack Name: nbperm |
---|---|---|
Platforms: | Windows for Workgroups: 3.11, Windows 95 | |
Description: | A NetBIOS share requiring only a password for validation was detected. As a result, a brute force attempt to log in using up to four character password combinations was successful. Note: This exploit results in up to 475,254 login attempts, and could run for several hours. False Negatives: Applying the lm-fix patch will prevent you from accessing a Windows 95 share from a Windows NT machine. |
|
Remedy: | Set the password to a minimum length of seven characters and change the password. To set the minimum password length, follow these steps:
—AND— To change the password, follow these steps:
|
|
References: |
Know Your Risks |