Pentesting TFTP
Discovery
# UDP scan
nmap -sU -p 69 $ip
# Service version
nmap -sU -p 69 -sV $ipEnumeration with Nmap Scripts
File Enumeration
# Enumerate common files (default wordlist)
nmap -sU -p 69 --script=tftp-enum $ip69/udp open tftp
| tftp-enum:
|_ ciscortr.cfgVersion Detection
Custom Wordlist
Common Files to Check
Manual Interaction
TFTP Client
Netcat (Raw)
TFTP Opcodes
Opcode
Operation
File Upload (If Writable)
Exploitation
Metasploit
Config File Analysis
Cisco Password Cracking
Common TFTP Software
Software
Notes
Last updated