OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] Microsoft Windows and *nix Telnet Port Number Argument Obfuscation

From: Andrew Haninger (ahaninggmail.com)
Date: Wed Jun 08 2005 - 02:07:34 CDT


On 6/7/05, Nick FitzGerald <nickvirus-l.demon.co.uk> wrote:
> This has been known since Adam was a cowboy.
Well, this /is/ full-disclosure, no? Best to tell than to withhold.

And while I would hope that there aren't a rash of old-school
vulnerabilities blowing through the list, I, for one, was unaware that
you could specify telnet ports like that. I wouldn't be surprised if
I'm not alone. Now I'll know what's up if I ever see stuff like this.

Though it does worry me a bit that this came from a cisco.com
address. Shouldn't they be kind of *YAWN* about all things networking?

--
Andy
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/