RPC: VxWorks WDB Agent Port

This signature detect access to the port used by the the VxWorks WDB Agent, a system-level debugger, without any requirement for authentication. A remote attacker can exploit this issue to read/write memory, call functions, and manage tasks.

Extended Description

VxWorks is prone to a remote security-bypass vulnerability. Successful exploits will allow remote attackers to perform debugging tasks on the vulnerable device. The issue affects multiple products from multiple vendors that ship with the VxWorks operating system. NOTE: This issue was previously covered in BID 42114 (VxWorks Multiple Security Vulnerabilities) but has been separated into its own record to better document it.

Affected Products

Cisco ons_15454sdh,Arris cadant_c3_cmts

Short Name
RPC:WDB-AGENT
Severity
Major
Recommended
False
Recommended Action
Drop
Category
RPC
Keywords
Agent Port VxWorks WDB bid:42158
Release Date
08/10/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
udp/17185
False Positive
Unknown
Vendors

Dell

Navini_networks

Mitel

Iwatsu

Nortel_networks

Bay_networks

Trendnet

Nokia

Xerox

Allied_telesyn

Siemens

Maipu

Pirelli

Pama

Polycom

Breezecom

Cisco

Canon

Fluke_networks

Milan_technology

Proxim

Ricoh

Zltelecom

Scopus_technology

Carrier_access

Ceragon

Lenovo_networks

Veraz_networks

Netgear

Skypilot_network

Lucent

Motorola

Samsung

D-link

Lutron_electronics

Digicom

Starguide_digital

Aperto

Telson

Vbrick_systems

Netsynt

3com

Okidata

Harbour

Digital_edge

Huawei_technologies

Cassio

Ericsson

Pannaway

Ambit

Zte

Shomiti_systems

Konicaminolta

Avaya

Amx

Telco_systems

Copper_mountain

Alvarion

Emc

Kathrein

Enablence

Tut_systems

Paradyne

Radvision

Sylantro_systems

Enterasys

Schneider_electric

Draytek

Galaxywind

Rivierdelta_networks

Gilat_network_systems

Broadcom

Lianchuang

Rockwall_automation

Knovative_inc

Epson

Smc

Psion_teklogix

Keda_communication_technology

Mavix

Guangzhou_gaoke_co

Alcatel-lucent

Alcatel

Shoretel

Larscom

Wind_river_systems

Netsteer

Mcdata

Redline_communications

Siae_microelettronica

Apple

Arris

Actelis_networks_inc

Control_microsystems

Foundry_networks

Hp

Found a potential security threat?