Default shares & SMS Server

From: Goran Sevic (goranlegion_at_ftml.net)
Date: 10/25/05

  • Next message: Frederic Charpentier: "Peoplesoft testing."
    To: pen-test@securityfocus.com
    Date: Mon, 24 Oct 2005 23:55:29 -0700
    
    

    Hi,

    While performing audit of an organisation, we found all the default
    shares including (C$ & D$) been enabled on the user's workstations. When
    asked the tech team, mentioned that these shares are needed for the
    functioning of Microsoft SMS servers.

    Is anyone aware of the requirement of these shares on the workstations?
    My feeling is that the ADMIN$ share on the workstations is enough for
    the operation of SMS functions.

    warm regs,
    GOrAn

    -- 
      Goran Sevic
      goranlegion@ftml.net
    -- 
    http://www.fastmail.fm - Email service worth paying for. Try it for free
    ------------------------------------------------------------------------------
    Audit your website security with Acunetix Web Vulnerability Scanner: 
    Hackers are concentrating their efforts on attacking applications on your 
    website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
    login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
    futile against web application hacking. Check your website for vulnerabilities 
    to SQL injection, Cross site scripting and other web attacks before hackers do! 
    Download Trial at:
    http://www.securityfocus.com/sponsor/pen-test_050831
    -------------------------------------------------------------------------------
    

  • Next message: Frederic Charpentier: "Peoplesoft testing."

    Relevant Pages

    • Re: Default shares & SMS Server
      ... > While performing audit of an organisation, ... > Is anyone aware of the requirement of these shares on the workstations? ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Cross site scripting and other web attacks before hackers do! ...
      (Pen-Test)
    • Re: Robocopy monitoring keepalive
      ... I can't think of a one sentence reply to a business owner who says he wants it his way, but perhaps you could ask him to move one or two shares, then remap them from the SBS login batch file. ... this assumes that all the workstations are using the same drive letter and will continue to do so. ... location on the file server. ...
      (microsoft.public.windows.server.sbs)
    • Re: Event ID 538 & 540 whenuser did not logon
      ... There are no shares on the workstations that they would be connecting ... A connection via a remote management program would ...
      (microsoft.public.win2000.security)
    • Re: Samba and IP shares
      ... > I would like to know what the possibilities are that one can bind samba ... > access to shares that the 192.168.99.0/24 can access. ... > set it to folders for certain workstations, so that not every user on the ... > network can access files from every workstation on the network. ...
      (Fedora)
    • Samba and IP shares
      ... I would like to know what the possibilities are that one can bind samba ... shares to work station IP Addresses or IP range. ... set it to folders for certain workstations, so that not every user on the ... network can access files from every workstation on the network. ...
      (Fedora)