Malicious users exploiting this vulnerability may be able to read and/or write information to shared directories.
This may also include IPC services and lead to remote code execution.
Severity: high
Fingerprint: 22420ce026fa767de22ea8c3df372350d40013922645c7572645c7572645c757
Found open SMB shares with NT AUTHORITY/ANONYMOUS LOGON print$ IPC$ nobody
Open service 203.6.149.148:445
2024-09-15 23:52
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-09-13 23:37
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-09-12 04:01
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-09-11 20:37
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:80
2024-09-10 02:23
HTTP/1.1 200 OK Accept-Ranges: bytes Cache-Control: no-cache, no-store, must-revalidate,proxy-revalidate, max-age=0 Content-Type: text/html; charset=utf-8 Date: Tue, 10 Sep 2024 02:23:30 GMT Last-Modified: Wed, 09 Aug 2023 12:22:52 GMT Vary: Accept-Encoding Connection: close Transfer-Encoding: chunked Page title: CasaOS <!-- * @LastEditors: zhanghengxin ezreal.zhang@icewhale.org * @LastEditTime: 2023/2/13 下午7:28 * @FilePath: /CasaOS-UI/public/index.html * @Description: * * Copyright (c) 2023 by IceWhale, All Rights Reserved. --> <!DOCTYPE html> <html lang=""> <head> <meta charset="utf-8"> <meta content="IE=edge" http-equiv="X-UA-Compatible"> <meta content="width=device-width,initial-scale=1" name="viewport"> <meta content="noindex" name="robots"> <link href="/img/icon/apple-touch-icon.png" rel="apple-touch-icon" sizes="180x180"> <link href="/site.webmanifest" rel="manifest"> <meta content="#da532c" name="msapplication-TileColor"> <meta content="#ffffff" name="theme-color"> <link href="/favicon.svg" rel="icon" type="image/svg+xml"> <link color="#000000" href="/favicon.svg" rel="mask-icon" type="image/svg+xml"> <title> CasaOS </title> <link href="/0.2dd2d12f.js" rel="prefetch"><link href="/1.5db3d552.js" rel="prefetch"><link href="/10.423e58a0.js" rel="prefetch"><link href="/11.d246a555.js" rel="prefetch"><link href="/12.4eac5e3e.js" rel="prefetch"><link href="/13.8034532c.js" rel="prefetch"><link href="/14.ca25658a.js" rel="prefetch"><link href="/15.19efebf7.js" rel="prefetch"><link href="/16.b287c5d8.js" rel="prefetch"><link href="/17.db71d42e.js" rel="prefetch"><link href="/18.53017fa1.js" rel="prefetch"><link href="/19.f1f63875.js" rel="prefetch"><link href="/2.22847873.js" rel="prefetch"><link href="/20.9d605925.js" rel="prefetch"><link href="/21.ce9dce35.js" rel="prefetch"><link href="/22.8b1a1c3c.js" rel="prefetch"><link href="/23.b74ca52f.js" rel="prefetch"><link href="/24.84bd18b9.js" rel="prefetch"><link href="/25.2a3fb134.js" rel="prefetch"><link href="/26.2790cf92.js" rel="prefetch"><link href="/27.c407dad3.js" rel="prefetch"><link href="/28.3aaf2b34.js" rel="prefetch"><link href="/29.8a7889d7.js" rel="prefetch"><link href="/3.ef1bcdaa.js" rel="prefetch"><link href="/30.e27182f1.js" rel="prefetch"><link href="/31.520a65f8.js" rel="prefetch"><link href="/32.f7675ca2.js" rel="prefetch"><link href="/4.689bd2da.js" rel="prefetch"><link href="/5.0c6220dd.js" rel="prefetch"><link href="/6.85178cc6.js" rel="prefetch"><link href="/7.ba6d8217.js" rel="prefetch"><link href="/8.befcb5ef.js" rel="prefetch"><link href="/9.9049e34c.js" rel="prefetch"><link href="/css/10.45c1f8ec.css" rel="prefetch"><link href="/css/12.334d4b05.css" rel="prefetch"><link href="/css/14.970cd79d.css" rel="prefetch"><link href="/css/15.88632374.css" rel="prefetch"><link href="/css/16.7fbe6cc2.css" rel="prefetch"><link href="/css/17.d9e9e6c5.css" rel="prefetch"><link href="/css/18.44d0aaf4.css" rel="prefetch"><link href="/css/19.7192e6be.css" rel="prefetch"><link href="/css/2.5de8d56e.css" rel="prefetch"><link href="/css/20.4e71ed45.css" rel="prefetch"><link href="/css/21.15f92228.css" rel="prefetch"><link href="/css/22.1c891eb3.css" rel="prefetch"><link href="/css/23.40626df2.css" rel="prefetch"><link href="/css/24.b26f8f78.css" rel="prefetch"><link href="/css/25.da294e9f.css" rel="prefetch"><link href="/css/28.4708add6.css" rel="prefetch"><link href="/css/3.5f7502bb.css" rel="prefetch"><link href="/css/31.1d67b0b0.css" rel="prefetch"><link href="/css/4.a2c6505c.css" rel="prefetch"><link href="/css/5.abcb5392.css" rel="prefetch"><link href="/css/9.a1100737.css" rel="prefetch"><link href="/app.a7fe2f98.js" rel="preload" as="script"><link href="/css/app.1d928047.css" rel="preload" as="style"><link href="/css/vendors~app.f18e855a.css" rel="preload" as="style"><link href="/vendors~app.268f5ac3.js" rel="preload" as="script"><link href="/css/vendors~app.f18e855a.css" rel="stylesheet"><link href="/css/app.1d928047.css" rel="stylesheet"></head> <body> <noscript> <strong>We're sorry but CasaOS doesn't work properly without JavaScript enabled. Please enable it to continue.</strong> </noscript> <div id="app"></div> <!-- built files will be auto injected --> <script type="text/javascript" src="/vendors~app.268f5ac3.js"></script><script type="text/javascript" src="/app.a7fe2f98.js"></script></body> </html>
Open service 203.6.149.148:445
2024-09-09 23:51
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-09-07 21:47
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-08-17 23:14
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-08-15 21:51
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-08-11 20:38
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-08-09 20:14
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0
Open service 203.6.149.148:445
2024-08-07 20:08
SMB NTLMSSP handshake results: Found non-Windows 6.1 build 0