TFTP is a minimal file-transfer protocol over UDP port 69 with no authentication at all, used for network-device configs, firmware, and PXE boot. Attacks are simple by nature: read and write files directly, and traverse outside the TFTP root where the server does not confine requests. It leaks device configurations that frequently contain credentials.
Subtopics#
- File read and write: unauthenticated GET and PUT.
- Directory traversal: escaping the TFTP root.