Hi,
Attached a nasl plugin for the detection of guest sip
services in
asterisk PBX.
By default not per se a vulnerability at once, but it
detects SIP
services which do allow guest access without authentication.
(thereafter
manual testing can show what can be done with it).
This will generate an false-positive on systems where the
admin did
allow guest access.
Cheers,
--Ferdy--
_______________________________________________
Plugins-writers mailing list
Plugins-writers list.nessus.org
http://mail.nessus.org/mailman/listinfo/plugins-writers
a>
|