[16868] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Cisco PIX Firewall (smtp content filtering hack)

daemon@ATHENA.MIT.EDU (Ioannis Migadakis)
Fri Sep 22 02:05:49 2000

Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Message-Id:  <3.0.6.32.20000921162459.007c76b0@mail_server.space.gr>
Date:         Thu, 21 Sep 2000 16:24:59 +0300
Reply-To: Ioannis Migadakis <jmig@SPACE.GR>
From: Ioannis Migadakis <jmig@SPACE.GR>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <Pine.LNX.4.21.0009191815360.14849-100000@naif.inet.it>

This particular vulnerability is not new.

It has been posted to BUGTRAQ on 9 Jul 2000 by Lincoln Yeoh with a title
"Out of order SMTP DATA commands incorrectly allow pass-through mode in
some firewall smtp filters/proxies"

The original post (does not say anything about Cisco PIX) can be found at:

http://www.securityfocus.com/templates/archive.pike?threads=0&list=1&end=200
0-07-09&tid=68903&start=2000-07-03&

Ioannis Migadakis

home help back first fref pref prev next nref lref last post