Port 1789 Details
known port assignments and vulnerabilities
threat/application/port search:
Port(s) |
Protocol |
Service |
Details |
Source |
1789 |
tcp,udp |
hello |
Trojan.Win32.Alien.erf / Remote Stack Buffer Overflow - the malware deploys a Web server AM6WebMgr.exe (JAO build 809) listening on TCP port 1789. Third-party attackers who can reach an infected host can trigger a classic remote buffer overflow by making a HTTP GET request for the "SynchroRes.cgi" URL with a long payload. This will overwrite the ECX and EIP stack registers.
References: [MVID-2021-0252]
Hello (IANA official)
|
SG
|
1789 |
tcp,udp |
hello |
hello |
IANA
|
|
2 records found
|