Risk Level: | Medium | Check or Attack Name: tftp |
Platforms: | TFTP, Solaris: 2.5.1 | |
Description: | TFTP was detected. TFTP has no authentication process for letting file transfers take place. An attacker can gain access to the password file. |
Remedy: | Unix: Comment out the tftp entry in /etc/inet.conf to disable TFTP entirely, or change the entry to restrict TFTP from accessing all world-readable files. Then restart inetd. |
References: | CERT Advisory CA-89.05, DEC/Ultrix 3.0 Systems, CERT Advisory CA-91.18, Active Internet tftp Attacks, |
Know Your Risks |