Malicious users exploiting this vulnerability may be able to read and/or write information to shared directories.
This may also include IPC services and lead to remote code execution.
Severity: high
Fingerprint: 22420ce026fa767de22ea8c38d9513f9b0d1c6ab54e4fbbbc76340a8115a58d8
Found open SMB shares with NT AUTHORITY/ANONYMOUS LOGON profiles users groups print$ SCSW_WORKING_SHARE B1_SHF B1_LOG SBODEMOPT IPC$
Open service 102.130.71.165:445
2024-12-22 01:00
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-20 00:30
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-18 01:44
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-15 23:49
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-14 00:05
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-12 01:04
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-12-02 01:36
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-11-30 01:00
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:445
2024-11-28 01:04
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 102.130.71.165:8000
2024-11-20 15:49
HTTP/1.1 200 OK content-type: text/html content-length: 11951 Page title: SAP XSEngine <html> <head> <meta http-equiv="content-type" content="text/html; charset=ISO-8859-1"> <title>SAP XSEngine</title> <style> body { color: #F0AB00; font: 12px Arial,Helvetica,sans-serif; background-repeat: no-repeat; background-size: 100%; height: 100%; margin: 0; background: #000000; /* Old browsers */ background: -moz-linear-gradient(top, #000000 55%, #666666 100%); /* FF3.6+ */ background: -webkit-gradient(linear, left top, left bottom, color-stop(55%,#000000), color-stop(100%,#666666)); /* Chrome,Safari4+ */ background: -webkit-linear-gradient(top, #000000 55%,#666666 100%); /* Chrome10+,Safari5.1+ */ background: -o-linear-gradient(top, #000000 55%,#666666 100%); /* Opera11.10+ */ background: -ms-linear-gradient(top, #000000 55%,#666666 100%); /* IE10+ */ filter: progid:DXImageTransform.Microsoft.gradient( startColorstr='#000000', endColorstr='#666666',GradientType=0 ); /* IE6-9 */ background: linear-gradient(top, #000000 55%,#666666 100%); /* W3C */ } #content { color: #f0ab00; position: absolute; top: 50%; left: 50%; margin-left: -400px; margin-top: -100px; width: 780px; height: 180px; padding: 10px; font-size: 16px; -webkit-box-reflect: below 1px -webkit-gradient(linear, 0 0, 0 100%, from(transparent), color-stop(.66, transparent), to(#FFF)); -moz-box-reflect: below 1px -moz-linear-gradient(top, white, transparent); } #content h1 { font-size: 80px; font-weight: normal; margin-bottom: 10px; margin-top: 40px; } #left { float: left; width: 360px; } #right { float: right; width: 400px; text-align: right; } </style> <!--[if lt IE 9]> <style> body { background: #000000; } </style> <![endif]--> </head> <body> <div id="content"> <div id="left"> <img src="data:image/gif;base64,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
Open service 102.130.71.165:445
2024-11-20 11:43
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0