> Here,  EXPN  results in "list not found", and VRFY isn't allowed.

The  option  "Allow  Remote  View to Local Groups," if enabled, allows
EXPN  access  to  a  *very*  specific  type  of list that you are very
unlikely to have: one created with the IMail client application on the
server  (not with IADMIN). So, FTR, it's not *impossible* to have this
vulnerability.

-Sandy


------------------------------------
Sanford Whiteman, Chief Technologist
Broadleaf Systems, a division of
Cypress Integrated Systems, Inc.
e-mail: [EMAIL PROTECTED]
------------------------------------


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to