NTP Mode 6 Vulnerabilities
Basic Information
PORT STATE SERVICE REASON
123/udp open ntp udp-responseEnumeration
ntpq -c readlist <IP_ADDRESS>
ntpq -c readvar <IP_ADDRESS>
ntpq -c peers <IP_ADDRESS>
ntpq -c associations <IP_ADDRESS>
ntpdc -c monlist <IP_ADDRESS>
ntpdc -c listpeers <IP_ADDRESS>
ntpdc -c sysinfo <IP_ADDRESS>nmap -sU -sV --script "ntp* and (discovery or vuln) and not (dos or brute)" -p 123 <IP>Examine configuration files
Option 2
REMEDIATION OF MODE 6 VULNERABILITIES
NTP ON IOS
REFERENCES
Last updated