NAT-PMP Detection (local network)

This script is Copyright (C) 2014 Tenable Network Security, Inc.


Synopsis :

It is possible to create mappings to the local network.

Description :

The remote device has the NAT-PMP protocol enabled. This protocol
allows any application on the local subnet to request port mappings from
the outside to the inside.

Make sure the use of this service is done in accordance to your security
policy. Letting any application create dynamic mappings is usually not
recommended.

Solution :

Filter incoming traffic to UDP port 5351.

Risk factor :

None

Family: Service detection

Nessus Plugin ID: 73125 ()

Bugtraq ID:

CVE ID: