← Port Encyclopedia
502
Modbus
TCP
Industrial Critical Risk
Modbus — industrial control protocol, no authentication, SCADA/ICS attacks

🔍 How to Scan Port 502

nmap -sV -p 502 target
nmap -sV -sC --script=banner -p 502 target
nc -zv target 502

🛡️ Security Considerations

  • Scan port 502 with nmap -sV to identify the exact service and version
  • If Modbus is not needed, close or firewall this port immediately
  • Check for default credentials if a management interface runs on this port
  • Use searchsploit modbus to find known exploits
  • Monitor traffic on port 502 with Wireshark or tcpdump for anomalies
  • Ensure the service is patched to the latest version to prevent known CVE exploitation