0-complexity / openvcloud

OpenvCloud
Other
2 stars 4 forks source link

ROS API access should be restricted only internally #1859

Open dinosn opened 5 years ago

dinosn commented 5 years ago

Hi,

Attacks on the mikrotik are still taking place as credentials could had been harvested in earlier attempts and re-used at this moment.

The ports of the API interface of the mikrotik ROS are still open publicly.

The access on ports 8728 and 8729 should be also restricted to the ROS and be accessible only from within the environments.

FastGeert commented 5 years ago

@dinosn According to @grimpy this is already the case.

dinosn commented 5 years ago

I'm afraid that this is not the case.

Please find below the scans on 2 networks of 2 separate G8s.

iceblade:~ krasn$ nmap -p 8728 --open  xxx.xxx.212.0-129

Starting Nmap 6.40-2 ( http://nmap.org ) at 2018-10-09 15:39 EEST
Nmap scan report for xxx.xxx.212.8
Host is up (0.096s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.12
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.13
Host is up (0.092s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.14
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.16
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.17
Host is up (0.092s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.19
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.22
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.26
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.29
Host is up (0.092s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.33
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.34
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.36
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.41
Host is up (0.091s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.47
Host is up (0.095s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.48
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.49
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.52
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.53
Host is up (0.095s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.54
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.56
Host is up (0.097s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.57
Host is up (0.092s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.58
Host is up (0.097s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.212.59
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

iceblade:~ krasn$ nmap -p 8728 --open  xxx.xxx.201.64-254

Starting Nmap 6.40-2 ( http://nmap.org ) at 2018-10-09 15:41 EEST
Nmap scan report for xxx.xxx.201.74
Host is up (0.11s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.77
Host is up (0.083s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.80
Host is up (0.088s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.81
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.82
Host is up (0.084s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.84
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.85
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.86
Host is up (0.084s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.87
Host is up (0.083s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.88
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.89
Host is up (0.086s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.90
Host is up (0.083s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.91
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.92
Host is up (0.086s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.98
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.99
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.100
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.101
Host is up (0.092s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.102
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.103
Host is up (0.088s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.104
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.105
Host is up (0.088s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.106
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.107
Host is up (0.098s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.108
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.110
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.111
Host is up (0.089s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.112
Host is up (0.084s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.113
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.114
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.115
Host is up (0.094s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.116
Host is up (0.088s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.117
Host is up (0.093s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.118
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.119
Host is up (0.087s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.121
Host is up (0.084s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.122
Host is up (0.090s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.123
Host is up (0.084s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.124
Host is up (0.096s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.130
Host is up (0.11s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.137
Host is up (0.11s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap scan report for xxx.xxx.201.139
Host is up (0.11s latency).
PORT     STATE SERVICE
8728/tcp open  unknown

Nmap done: 191 IP addresses (49 hosts up) scanned in 6.62 seconds