vulnerability

Scanning Diagnostics: Access errors while attempting to write to the file system

Severity
1
CVSS
(AV:L/AC:H/Au:M/C:N/I:N/A:N)
Published
Nov 2, 2021
Added
Nov 2, 2021
Modified
Nov 2, 2021

Description


The following information is for Scan Diagnostic purposes only, and is not indicative of a detected vulnerability.



The scanning user requires write access to the "%windir%\Temp" directory on the target file system in order to create and remove temporary files during policy assessment.



This access is required in order to collect Windows Audit Policy Subcategory configuration information during certain policy assessments. Write access is not required for vulnerability assessments.



Write access configuration should be done carefully and access should only be provided when necessary as it is a high risk service if credentials were compromised.

Solution

rapid7-diagnostics-cifs-write-access-errors

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.