NAT-PMP Detection (remote network)

This script is Copyright (C) 2014 Tenable Network Security, Inc.


Synopsis :

It is possible to obtain information about the remote network.

Description :

The remote device has the NAT-PMP protocol enabled. This protocol
allows any application on the local subnet to request port mappings from
the outside to the inside.

If this service is reachable from the outside, it may allow an attacker
to gain more information about your network and possibly to break into
it by creating dynamic port mappings.

Solution :

Filter incoming traffic to UDP port 5351.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)

Family: Service detection

Nessus Plugin ID: 73124 ()

Bugtraq ID:

CVE ID: