CVE-2013-5211

EXPLOITED IN THE WILD

NTP Monitor List Scanner

Title source: metasploit

Description

The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service (traffic amplification) via forged (1) REQ_MON_GETLIST or (2) REQ_MON_GETLIST_1 requests, as exploited in the wild in December 2013.

Exploits (17)

nomisec SCANNER 15 stars
by dani87 · poc
https://github.com/dani87/ntpscanner
nomisec WORKING POC 10 stars
by sepehrdaddev · dos
https://github.com/sepehrdaddev/ntpdos
nomisec WORKING POC 5 stars
by 0xhav0c · infoleak
https://github.com/0xhav0c/CVE-2013-5211
nomisec SCANNER 2 stars
by suedadam · poc
https://github.com/suedadam/ntpscanner
nomisec SCANNER
by requiempentest · poc
https://github.com/requiempentest/NTP_CVE-2013-5211
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_monlist.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/udp/udp_amplification.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_peer_list_sum_dos.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_peer_list_dos.rb
exploitdb WORKING POC
by Danilo PC · cdoslinux
https://www.exploit-db.com/exploits/33073
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/portmap/portmap_amp.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_req_nonce_dos.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_reslist_dos.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/upnp/ssdp_amp.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_unsettrap_dos.rb
metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/ntp/ntp_readvar.rb

References (21)

... and 1 more

Scores

EPSS 0.9214
EPSS Percentile 99.7%

Exploitation Intel

VulnCheck KEV 2014-01-02
InTheWild.io 2018-10-30

Classification

CWE
CWE-20
Status draft

Affected Products (31)

opensuse/opensuse
ntp/ntp < 4.2.7
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
ntp/ntp
... and 16 more

Timeline

Published Jan 02, 2014
Tracked Since Feb 18, 2026