Bugtraq mailing list archives

Re: Novell BorderManager 3.0 EE - Encoded URL rule bypass


From: hno () HEM PASSAGEN SE (Henrik Nordstrom)
Date: Mon, 10 Jul 2000 22:52:58 +0200


Knud Erik Højgaard wrote:

has anyone tried the longip equivalent for the host? (for the few what dont
know longip, try //echo -a $longip(123.45.67.89) in mIRC ) ... its a rather
old spammer trick.. disguising the urls like http://43243234432/%43%76%32

Which makes it a not valid URL. See RFC 1738 section 3.1 for valid host
specifications in Internet URLs.

Squid simply rejects such URL's as invalid, and there is no
configuration option to enable them.

--
Henrik Nordstrom



Current thread: