[19948] in bugtraq
Re: ADVISORY SSRT0715 Compaq Management Software Potential
daemon@ATHENA.MIT.EDU (Bob Fiero)
Fri Mar 30 06:36:03 2001
Mime-Version: 1.0
Content-Type: text/plain; charset=US-ASCII
Content-Disposition: inline
Message-ID: <sac2f182.005@string.mentalfloss.net>
Date: Thu, 29 Mar 2001 08:25:23 -0500
Reply-To: Bob Fiero <bfiero@MENTALFLOSS.NET>
From: Bob Fiero <bfiero@MENTALFLOSS.NET>
To: BUGTRAQ@SECURITYFOCUS.COM
Content-Transfer-Encoding: 8bit
I've tested this on various Compaq boxes running Netware 5.0 and 5.1, with and without BorderManager, and found them not to be vulnerable to acting as an anonymous proxy. On each attempt the Compaq web agent abends without affecting other services.
<sigh> I guess if I wanted some excitement I'd have to do something silly, like run an IIS (Insecure Information Server) or Virus Exchange server on the public Internet.