RPC: VxWorks WDB Agent Port
This signature detect access to the port used by the the VxWorks WDB Agent, a system-level debugger, without any requirement for authentication. A remote attacker can exploit this issue to read/write memory, call functions, and manage tasks.
Extended Description
VxWorks is prone to a remote security-bypass vulnerability. Successful exploits will allow remote attackers to perform debugging tasks on the vulnerable device. The issue affects multiple products from multiple vendors that ship with the VxWorks operating system. NOTE: This issue was previously covered in BID 42114 (VxWorks Multiple Security Vulnerabilities) but has been separated into its own record to better document it.
Affected Products
Cisco ons_15454sdh,Arris cadant_c3_cmts
References
BugTraq: 42158
URL: http://blog.metasploit.com/2010/08/vxworks-vulnerabilities.html http://www.windriver.com/
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Dell
Navini_networks
Mitel
Iwatsu
Nortel_networks
Bay_networks
Trendnet
Nokia
Xerox
Allied_telesyn
Siemens
Maipu
Pirelli
Pama
Polycom
Breezecom
Cisco
Canon
Fluke_networks
Milan_technology
Proxim
Ricoh
Zltelecom
Scopus_technology
Carrier_access
Ceragon
Lenovo_networks
Veraz_networks
Netgear
Skypilot_network
Lucent
Motorola
Samsung
D-link
Lutron_electronics
Digicom
Starguide_digital
Aperto
Telson
Vbrick_systems
Netsynt
3com
Okidata
Harbour
Digital_edge
Huawei_technologies
Cassio
Ericsson
Pannaway
Ambit
Zte
Shomiti_systems
Konicaminolta
Avaya
Amx
Telco_systems
Copper_mountain
Alvarion
Emc
Kathrein
Enablence
Tut_systems
Paradyne
Radvision
Sylantro_systems
Enterasys
Schneider_electric
Draytek
Galaxywind
Rivierdelta_networks
Gilat_network_systems
Broadcom
Lianchuang
Rockwall_automation
Knovative_inc
Epson
Smc
Psion_teklogix
Keda_communication_technology
Mavix
Guangzhou_gaoke_co
Alcatel-lucent
Alcatel
Shoretel
Larscom
Wind_river_systems
Netsteer
Mcdata
Redline_communications
Siae_microelettronica
Apple
Arris
Actelis_networks_inc
Control_microsystems
Foundry_networks
Hp