OpenBSD 3.x – PF RDR Network Information Leakage

OpenBSD 3.x – PF RDR Network Information Leakage

漏洞ID 1054001 漏洞类型
发布时间 2003-07-02 更新时间 2003-07-02
图片[1]-OpenBSD 3.x – PF RDR Network Information Leakage-安全小百科CVE编号 N/A
图片[2]-OpenBSD 3.x – PF RDR Network Information Leakage-安全小百科CNNVD-ID N/A
漏洞平台 OpenBSD CVSS评分 N/A
|漏洞来源
https://www.exploit-db.com/exploits/22858
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
source: http://www.securityfocus.com/bid/8082/info

OpenBSD PF is prone to an information leakage vulnerability when configured to redirect incoming traffic from standard ports to high ports. This occurs because PF responds different to packets destined for active private addresses than to those destined for inactive ones. This could be exploited to enumerate network resources for other network segments in preparation for further attacks.

nmap -sS -P0 -n -T 4 -p 25 10.0.0.0/8

nmap -sS -P0 -n -T 4 -p 25,8025,1025,2500 10.0.0.0/8

相关推荐: Foundstone FScan Banner Grabbing Format String Vulnerability

Foundstone FScan Banner Grabbing Format String Vulnerability 漏洞ID 1102215 漏洞类型 Input Validation Error 发布时间 2002-04-19 更新时间 2002-04…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享