OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] IpSwitch IMAP Server LOGON stack overflow

From: Dave Aitel (daveimmunitysec.com)
Date: Wed Jun 08 2005 - 06:41:38 CDT


Neat! Although if you'd done the other Logon bug, you'd not have had to
worry about alpha-encoding quite so much, and you'd have a
SP-independant attack.

It's a good piece of artwork though. :>

-dave

nolimitcoreiso.org wrote:

>Hello, attached is a proof of concept for the IpSwitch IMAP Server LOGON stack overflow
>
>nolimit
>
>
>
>------------------------------------------------------------------------
>
>_______________________________________________
>Full-Disclosure - We believe in it.
>Charter: http://lists.grok.org.uk/full-disclosure-charter.html
>Hosted and sponsored by Secunia - http://secunia.com/
>

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/