1
Security and Networking / Cacko qpe listens on ports 4992 and 4244
« on: December 08, 2006, 05:36:02 am »
I've found some info about what these ports are used for (here):
4242 - ftp server login: root passwword: NONE!
This allows anyone to access any file on any zaurus that is network connected. Files can be downloaded, uploaded, or deleted! This ftp server does not even look at the password file. The login name and blank password are hard coded into the ftp server!
4243 - behaves a little like rsync
This port is totaly unencrypted and the login/password combination used by the desktop sync software can be snooped with tcpdump with no problem. The login/password combination are hard coded and can not be changed!
4992 - probably also part of the desktop sync
4242 - ftp server login: root passwword: NONE!
This allows anyone to access any file on any zaurus that is network connected. Files can be downloaded, uploaded, or deleted! This ftp server does not even look at the password file. The login name and blank password are hard coded into the ftp server!
4243 - behaves a little like rsync
This port is totaly unencrypted and the login/password combination used by the desktop sync software can be snooped with tcpdump with no problem. The login/password combination are hard coded and can not be changed!
4992 - probably also part of the desktop sync