Skip to content

H3-2022-0004

Server Message Block (SMB) Port Exposed to the Internet

Category SECURITY_MISCONFIGURATION
Base Score 3.5

Description

The SMB service is accessible from the internet.

Impact

SMB exposure has been a leading source of company breaches over the last few years. Attackers can conduct credential attacks by utilizing passwords found from past data breaches and conduct password spray attacks. If successful, this gives attackers access to the internal network. Additionally, multiple critical vulnerabilities over the years within the SMB protocol have left companies with increased risk of breach by exposing this service.

References