What are the top security concerns when setting up a PXE (Preboot Execution Environment) booting environment, ordered by severity of a possible exploitation?
Things that I thought of are (in no particular order):
- Rogue DHCP takeover
- Man-in-the-Middle attacks on the NBP load over TFTP
The question is meant to look at the general protocol and its possible weak points and is not restricted to a certain setup concerning equipment or attacker.
If anyone wants to help me bring this question in a more suited format, you are welcome.