Tenable Network Security
Solutions Products Nessus Demos Partners Online Store
Nessus
Download
Plugins
     Newest Plugins
     Obtain an activation code
     View all plugins
     Search
Documentation
Register
Buy Now
ProfessionalFeed Support
Bugs
All the Tenable Products

SMB LsaQueryInformationPolicy Function SID Enumeration

This script is Copyright (C) 2005-2010 Tenable Network Security, Inc.

FamilyWindows
Nessus Plugin ID10859 (smb_host2sid.nasl)
Bugtraq ID959
CVE IDCVE-2000-1200

Description:
Synopsis :

It is possible to obtain the host SID for the remote host.

Description :

By emulating the call to LsaQueryInformationPolicy(), it was possible
to obtain the host SID (Security Identifier).

The host SID can then be used to get the list of local users.

See also :

http://technet.microsoft.com/en-us/library/bb418944.aspx

Solution :

You can prevent anonymous lookups of the host SID by setting the
'RestrictAnonymous' registry setting to an appropriate value.

Refer to the 'See also' section for guidance.

Risk factor :

None
About Us | Jobs | Whitepapers | Training | Discussion Forums | Support Portal | Blog | RSS Feeds | Contact Us | Legal | Privacy

© Copyright 2002 - 2010 Tenable Network Security(R). All Rights Reserved.

This is the web site for the Nessus Vulnerability Scanner from Tenable Network Security. If you are looking for the probabilistic analysis software from Southwest Research Institute, please visit www.nessus.swri.org