Penetration Testing mailing list archives

RE: SMB-Link in Lotus Notes


From: "Fernando Cardoso" <fernando.cardoso () whatevernet com>
Date: Thu, 21 Mar 2002 10:29:06 -0000

If they are using an unpatched Win 2K and the default telnet application is
the native win 2K client, you can try to use telnet://, since it will try to
authenticate first using the current user credentials.

Cheers

Fernando

--
Fernando Cardoso - Security Consultant       WhatEverNet Computing, S.A.
Phone : +351 21 7994200                      Praca de Alvalade, 6 - Piso 6
Fax   : +351 21 7994242                      1700-036 Lisboa - Portugal
email : fernando.cardoso () whatevernet com     http://www.whatevernet.com/




Hi all,
SMB Links in HTML Mail to sniff the NTML-Hashes are
well known. I'm wondering how this is working in lotus
notes. The usual syntax file:// won't work. Any idea?

Thanks

if0ff



_____________________________________________________________________
                      INTERNET MAIL FOOTER 
A presente mensagem pode conter informação considerada confidencial.
Se o receptor desta mensagem não for o destinatário indicado, fica
expressamente proibido de copiar ou endereçar a mensagem a terceiros.
Em tal situação, o receptor deverá destruir a presente mensagem e por
gentileza informar o emissor de tal facto.
---------------------------------------------------------------------
Privileged or confidential information may be contained in this
message. If you are not the addressee indicated in this message, you
may not copy or deliver this message to anyone. In such case, you
should destroy this message and kindly notify the sender by reply
email.
---------------------------------------------------------------------


----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/


Current thread: