GNU SourceNavigator DEMO backdoor(gate,arch de triumphe)

From: Elmer Joandi (elmer_jat_private)
Date: Tue May 12 1998 - 22:14:32 PDT

  • Next message: Bill Trost: "Re: easy DoS in most RPC apps"

    Well, it is useful to do netstat -ae periodicaly.
    
    SN 4.0 demo for Linux listens on first free port on 0.0.0.0 *.*, even if
    localhost name is set to 127.0.0.1 (default 0.0.0.0) in SN configuration.
    
    most lovely command after telneting into it is "exec cat /etc/passwd"
    
    There is no direct mentioning of "the feature" in documentation.
    
    even if it can be explained (as everything can), not mentioning "the
    feature" in a first place is a serious ...(place your paranoid expression
    here)
    
    It comes probably to the point that "there is no such thing as a free
    lunch". But if there isn't, look at Sniff, www.takefive.co.at
    
    
    
    Elmer Joandi
    AS Cybernetica, http://www.cyber.ee/
    http://www.ut.ee/~elmer_j/
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 13:53:25 PDT