Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Remote file access >> TFTP file detection (Cisco IOS)


Vulnerability Assessment Details

TFTP file detection (Cisco IOS)

Vulnerability Assessment Summary
Acertains if the remote host has sensitive files exposed via TFTP (Cisco IOS)

Detailed Explanation for this Vulnerability Assessment

The remote host has a TFTP server installed that is serving one or
more sensitive Cisco IOS files.\n\nThese files potentially include
passwords and other sensitive information, so should not be exposed
to unnecessary scrutiny.

Solution : If it is not required, disable the TFTP server. Otherwise
restrict access to trusted sources only.

Risk Factor : High

Networks Security ID:

Vulnerability Assessment Copyright: This NASL script is Copyright 2005 Corsaire Limited.

Cables, Connectors

DELL PowerEdge R710 Server 2×Six-Core Xeon 3.33GHz + 72GB RAM + 6×4TB SAS RAID
$427.27
DELL PowerEdge R710 Server 2×Six-Core Xeon 3.33GHz + 72GB RAM + 6×4TB SAS RAID pictureRaid Controller cmd hsb-005000-015
$50.0
Raid Controller cmd hsb-005000-015 pictureNEC N8103-172 SAS/SATA RAID CONTROLLER 512MB PCIe
$34.46
NEC N8103-172 SAS/SATA RAID CONTROLLER 512MB PCIe pictureNEW CONTROLLER 3WARE AMCC 9550SXU-8LP RAID CONTROLLER
$89.02
NEW CONTROLLER 3WARE AMCC 9550SXU-8LP RAID CONTROLLER picture


Discussions

No Discussions have been posted on this vulnerability.