Security issue on GD board with IP Trunk

You found one ?
You know about one ?
Share it !
Post Reply
User avatar
frank
Alcatel Unleashed Certified Guru
Alcatel Unleashed Certified Guru
Posts: 3386
Joined: 06 Jul 2004 00:18
Location: New York
Contact:

Security issue on GD board with IP Trunk

Post by frank »

I made a test today...

I opened my GD board to the internet.
Ports open:

UDP 1718
UDP 1719
TCP 1720

UDP/TCP 1024 - 65535


Guess what.. The box got hacked: It restarted a couple of times, I lost all of my boards (because GD restarted), and now i can't reboot it anymore...

I had a tape in between the router and the box, and I saw all kind of attacks that I will not be able to provide here.. But I'll try again if I have time, and demonstrate it ..
Code Free Or Die
cavagnaro

Post by cavagnaro »

It seems to me very obvoius, those ports are very common, maybe if you configure security with netadmin -m ?
Also, i think it's better if a firewall do the NAT to the OXE and it handles the security allowing only the other node to go inside.
User avatar
frank
Alcatel Unleashed Certified Guru
Alcatel Unleashed Certified Guru
Posts: 3386
Joined: 06 Jul 2004 00:18
Location: New York
Contact:

Post by frank »

I opened those ports for VoIP / IP trunking with people from the internet.
Actually, I am not sure this is due to an attack... I'll make some more researches...
Code Free Or Die
Post Reply

Return to “Bugs & Security issues”