Pentesting TFTP
Discovery
# UDP scan
nmap -sU -p 69 $ip
# Service version
nmap -sU -p 69 -sV $ipEnumeration with Nmap Scripts
File Enumeration
# Enumerate common files (default wordlist)
nmap -sU -p 69 --script=tftp-enum $ip69/udp open tftp
| tftp-enum:
|_ ciscortr.cfgVersion Detection
Custom Wordlist
Common Files to Check
Manual Interaction
TFTP Client
Netcat (Raw)
TFTP Opcodes
Opcode
Operation
File Upload (If Writable)
Exploitation
Metasploit
Config File Analysis
Cisco Type 7 Password Decryption
Common TFTP Software
Software
Notes
Last updated