Airport Administrative Traffic Detection (192/UDP)

medium Nessus Plugin ID 20345

Synopsis

The remote host is a wireless access point.

Description

The remote host is an Airport, Airport Extreme or Airport Express wireless access point. It is possible to gather information about the remote base station (such as its connection type or connection time) by sending packets to UDP port 192.

An attacker connected to this network may also use this protocol to force the base station to disconnect from the network if it is using PPPoE, thus causing a denial of service for the other users.

Solution

Filter incoming traffic to this port and make sure only authorized hosts can connect to the wireless network this base station listens on.

Plugin Details

Severity: Medium

ID: 20345

File Name: airport_udp_info.nasl

Version: 1.19

Type: remote

Published: 12/27/2005

Updated: 9/25/2019

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/h:apple:airport_express