Network misconfigurations

Azure virtual machine allows direct SNMP access from the Internet

Risk Level

Hazardous (3)

Platform(s)
Compliance Frameworks
  • CCPA
  • ,
  • ISO/IEC 27001
  • ,
  • Microsoft Cloud Security Benchmark
  • ,
  • Mitre ATT&CK v12
  • ,
  • New Zealand Information Security Manual
  • ,
  • NIST 800-53
  • ,
  • Orca Best Practices
  • ,
  • UK Cyber Essentials

Description

Simple Network Management Protocol (SNMP) is an Internet Standard protocol for collecting and organizing information about managed devices on IP networks and for modifying that information to change device behaviour. The SNMP port (161) is open on your virtual machine and allows all incoming traffic from the Internet. In order to keep security best practices, you should restrict access to be only from allowed IP addresses.
  • Recommend icon

    Recommended Mitigation

    Configure networking rule to allow incoming SNMP traffic from allowed IP addresses only.