Rapid7 Vulnerability & Exploit Database

Scanning Diagnostics: Unknown error while trying to access the remote SAM

Free InsightVM Trial No Credit Card Necessary
2024 Attack Intel Report Latest research by Rapid7 Labs
Back to Search

Scanning Diagnostics: Unknown error while trying to access the remote SAM

Severity
1
CVSS
(AV:L/AC:H/Au:M/C:N/I:N/A:N)
Published
11/02/2021
Created
11/03/2021
Added
11/02/2021
Modified
11/02/2021

Description

The following information is for Scan Diagnostic purposes only, and is not indicative of a detected vulnerability.

Security Account Manager (SAM) access is required for policy assessments but is not a requirement for vulnerability assessment.

The scanning user encountered an unknown error while attempting to verify remote access to the SAM service.

The scanning user requires remote access to the SAM to collect information about users and groups on the target system. This information is required for policy assessment.

Allowing SAM access over SMBv1 is a security concern as user information could be retrieved via packet inspection. SAM access should only be allowed over encrypted protocols.

Solution(s)

  • rapid7-diagnostics-cifs-sam-unknown-error

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;