UPnP vulnerability a security issues


  • Rusli
    Rusli Posts: 1,012 Influencer

    This is a serious issues.


    Please take note:- http://www.us-cert.gov/current/#cert_releases_upnp_security_advisory


    CERT Releases UPnP Security Advisory

    added Tuesday, January 29, 2013 at 4:46 pm                

    Multiple vulnerabilities have been announced in libupnp, the open source portable SDK for UPnP devices. Libupnp is employed by hundreds of vendors for UPnP-enabled devices. Information is also available in CERT Vulnerability Note VU#922681.
    US-CERT recommends that affected UPnP device vendors and developers obtain and employ libupnp version 1.6.18, which addresses these vulnerabilities.
    US-CERT recommends that users and administrators review CERT Vulnerability Note VU#922681, disable UPnP (if possible), and restrict access to SSDP (1900/udp) and Simple Object Access Protocol (SOAP) services from untrusted networks such as the Internet


    This is very important please read:-





  • Rusli
    Rusli Posts: 1,012 Influencer

    To check if your routers or computers are affected with uPnP security vulneralbility please goto www.grc.com and select sheild up.


    There is an option for you to check for uPnP (Universal Plug and Play) security vulnerability.

  • siramic
    siramic Posts: 64 Active Engager

    Thanks for these warings you posted, (update flash thread also) Rusli, and for the follow up grc test, it's appreciated Smiley Happy

This discussion has been closed.
Pricing & Product Info