cifs forceguest
We have a vulnerability in our security scans for which I am looking for a way to mitigate. Any help in resolving this would be greatly appreciated. Thanks in advance.
All known variants of Windows since Windows XP include a "ForceGuest" operating mode whereby the CIFS service allows unauthenticated users to connect to the service with limited access.
The "ForceGuest" mode is enabled by default on some installations which aren't joined to a domain and have Simple File Sharing enabled.
This operating mode accepts any set of login credentials, but forces the logged on user to operate under the access restrictions of a guest user on the system.