AFP Server Share Enumeration (guest)

This script is Copyright (C) 2010-2011 Tenable Network Security, Inc.


Synopsis :

The "guest" user can access some network shares.

Description :

The remote AFP server allows guest users to connect to several
shares.

Make sure this is in line with your organization's security policy.

Solution :

If you do not want the 'guest' user to be able to access any share on
the remote system :

- On Mac OS X client, edit System Preferences -> Accounts
-> Guest and uncheck the option 'Allow guests to connect
to shared folders'.

- On Mac OS X server, edit the AFP service and disable
option 'Allow guests to connect'.

Risk factor :

None

Family: Misc.

Nessus Plugin ID: 45380 (afp_list_guest_shares.nasl)

Bugtraq ID:

CVE ID: