Vulnerability Development mailing list archives

Re: Reported Kazaa and Morpheus vulnerabilities


From: "HarryM" <harrym () the-group org>
Date: Mon, 4 Feb 2002 13:07:29 -0000

I tried the http put style, didnt work but got the kazaa username with
the following info:

HTTP/1.0 501 Not Implemented
X-Kazaa-Username: some_kazaa_user
X-Kazaa-Network: MusicCity
X-Kazaa-IP: xxx.xxx.xxx.xxx:1214

Kazaa username and IP adress is changed for whatever purpose. :)

Qazi M.M. Ahmed

the more I read the mroe I think this is a non-issue :)

http://www.yar.opennet.ru/base/exploits/999621483_223.txt.html
http://cert.uni-stuttgart.de/archive/bugtraq/2001/08/msg00416.html

While this is the topic, check this out. apparently a dos attack, unrelated
to the http thing. this is from september though so i daresay it's not
important anymore, if it ever was.

http://www.securiteam.com/exploits/5XP0D1F5FM.html


Harry M


Current thread: