[27023] in bugtraq
Re: Bypassing SMTP Content Protection with a Flick of a Button
daemon@ATHENA.MIT.EDU (Gossi The Dog)
Fri Sep 13 11:28:53 2002
Message-ID: <3059.194.129.200.1.1031919223.squirrel@www.lab6.com>
Date: Fri, 13 Sep 2002 12:13:43 -0000 (GMT)
From: "Gossi The Dog" <gossi@lab6.com>
To: <bugtraq@securityfocus.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit
Regarding NAI Webshield;
Webshield Solaris, e250 and e500 all reassemble the messages and correctly
scan them.
Webshield SMTP (ie for NT/2000) does not follow the RFC, and the messages
are blindly passed on, bypassing content filters, virus checking etc.
-----Original Message-----
From: Aviram Jenik [mailto:aviram@beyondsecurity.com]
Sent: 12 September 2002 14:45
To: bugtraq@securityfocus.com
Subject: Bypassing SMTP Content Protection with a Flick of a Button
Bypassing SMTP Content Protection with a Flick of a Button
------------------------------------------------------------------------
Article reference: http://www.securiteam.com/securitynews/5YP0A0K8CM.html
<snip>