Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Detect SWAT server port

Information

Severity

Severity

High

Family

Family

Service detection

CVSSv2 Base

CVSSv2 Base

7.2

CVSSv2 Vector

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Workaround

Created

Created

18 years ago

Modified

Modified

5 years ago

Summary

SWAT (Samba Web Administration Tool) is running on this port. SWAT allows Samba users to change their passwords, and offers to the sysadmin an easy-to-use GUI to configure Samba. However, it is not recommended to let SWAT be accessed by the world, as it allows an intruder to attempt to brute force some accounts passwords. In addition to this, the traffic between SWAT and web clients is not ciphered, so an eavesdropper can gain clear text passwords easily.

Solution

Solution

Disable SWAT access from the outside network by making your firewall filter this port. If you do not need SWAT, disable it by commenting the relevant /etc/inetd.conf line.

Common Vulnerabilities and Exposures (CVE)