Remote Telnet Server Encryption Scanner
You can find if encryption option is provided on a remote telnet server using this tool.
Short Info
Level
Medium
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
15 seconds
Time Interval
1 week
Scan only one
Domain, IPv4, Subdomain
Toolbox
-
Determines whether the encryption option is supported on a remote telnet server. Some systems (including FreeBSD and the krb5 telnetd available in many Linux distributions) implement this option incorrectly, leading to a remote root vulnerability. This script currently only tests whether encryption is supported, not for that particular vulnerability.
References:
- FreeBSD Advisory: http://lists.freebsd.org/pipermail/freebsd-announce/2011-December/001398.html
- FreeBSD Exploit: http://www.exploit-db.com/exploits/18280/
- RedHat Enterprise Linux Advisory: https://rhn.redhat.com/errata/RHSA-2011-1854.html