Penetration Testing mailing list archives
Re: Mail Relay / Open Mail Replay
From: Michal Zalewski <lcamtuf () coredump cx>
Date: Sun, 2 Oct 2011 12:39:24 -0700
Suppose there is Mail server having port 25 open xyz.com an attacker login on Mail server through telnet and then try to send the mail but the he can only send a mail within the xyz company not outside ..so this will be consider as Vulnerability or not
Yes. Thankfully, this can be resolved by removing the legacy /usr/bin/telnet program from the originating system. /mzi ------------------------------------------------------------------------ This list is sponsored by: Information Assurance Certification Review Board Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. http://www.iacertification.org ------------------------------------------------------------------------
Current thread:
- Mail Relay / Open Mail Replay informationhacker08 (Oct 02)
- Re: Mail Relay / Open Mail Replay haZard0us (Oct 02)
- Re: Mail Relay / Open Mail Replay Voulnet (Oct 02)
- Re: Mail Relay / Open Mail Replay Michal Zalewski (Oct 02)
- Re: Mail Relay / Open Mail Replay Andy Meyers (Oct 02)