[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Full-Disclosure] Re: [Full-Disclosure] hax0r target just because of silly autoresponder? (was: Nico Treu/METZLER ist außer Haus.)



Valdis.Kletnieks@vt.edu wrote:

> And if MailMan wasn't configured to strip RFC822 headers, we'd also have a 
> nice
> hint as to exactly which patchlevel of the offending MUA/MTA the site was 
> running,
> so we could arm ourselves with suitable exploits.

And you don't think you'd get that information by sending him a message 
directly, expecting a vacation notice??

   Return-path: <NTreu@metzler.com>
   [...]
   Received: from SMK2.metzler.com (smk2.metzler.com) by
    mail2.metzler.com (Content Technologies SMTPRS 4.3.6) with SMTP id
    <T67c3cbcda6d96e229a3c8@mail2.metzler.com> for
    <nick@virus-l.demon.co.uk>; Sun, 15 Feb 2004 04:15:45 +0100
   Received: by SMK2.metzler.com(Lotus SMTP MTA v4.6.7  (934.1 12-30-
    1999))  id C1256E3B.001281E7 ; Sun, 15 Feb 2004 04:22:09 +0100
   X-Lotus-FromDomain: FRANKFURT
   From: NTreu@metzler.com
   To: nick@virus-l.demon.co.uk
   Message-ID: <C1256E3B.00128176.00@SMK2.metzler.com>
   Date: Sun, 15 Feb 2004 04:00:44 +0100
   Subject: =?iso-8859-1?Q?Nico_Treu/METZLER_ist_au=DFer_Haus.?=
   [...]

   Ich werde ab  13.02.2004 nicht im Büro sein. Ich kehre zurück am
   23.02.2004.

   Ich werde Ihre Nachrichten nach meiner Rückkehr beantworten.

   Mit freundlichen Grüssen


   Nico Treu


No surprises there then...


Regards,

Nick FitzGerald

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html