"Sebastian Wells" <alteregoat_private> writes: > Is this an exploit to the most recent UPnP hole that was posted to bugtraq? > In the discussion of that vulnerability it was stated that UPnP was on UDP > port 1900. > > Am I just confused? UPnP support comes with a web server on TCP port 5000 (which processes SOAP requests, IIRC). Another UDP-based web server seems to be listening on port 1900, implementing SSDP (yes, there's an IETF draft floating around for HTTP over UDP). -- Florian Weimer Florian.Weimerat_private-Stuttgart.DE University of Stuttgart http://cert.uni-stuttgart.de/ RUS-CERT +49-711-685-5973/fax +49-711-685-5898
This archive was generated by hypermail 2b30 : Mon Dec 24 2001 - 14:46:26 PST