Penetration Testing mailing list archives

RE: Linksys Pen Test


From: auto241065 () hushmail com
Date: Wed, 20 Jun 2001 14:06:02 -0500 (EDT)

Older firmware versions did not differentiate between TCP and UDP for filters 
and forwarding.
So they could have intentionally opened a TCP service they felt was OK to 
be exposed, but the UDP port had a vulnerable service running. Or vice versa. 
I know, not very likely, but possible.

Also, I believe older versions would source-port forward UDP 53 traffic.
Free, encrypted, secure Web-based email at www.hushmail.com

Current thread: