S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
low·Information Scans·Updated Dec 16, 2023

Microsoft RPC Enumeration Scanner

Microsoft RPC Enumeration Scanner

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3.5k
Times Used
continuous scan runs
4.8k
Continuously Checked
assets under CS
263
Vulnerabilities Found
confirmed findings
References
Detail

Queries an MSRPC endpoint mapper for a list of mapped services and displays the gathered information.

As it is using smb library, you can specify optional username and password to use.

Script works much like Microsoft's rpcdump tool or dcedump tool from SPIKE fuzzer.

Solution Advice

The vulnerability is addressed by the patch, which appropriately verifies the format of messages received via TCP/IP. The RPC Endpoint Mapper can reject malformed messages because of this verification. Visit the vendor web page to download the patches.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.