From:3APA3A <3APA3A_(at)_security.nnov.ru>
Date:25 марта 2002 г.
Subject:One more way to bypass NAV

Dear [email protected],

I've   updated   "Bypassing   content   filtering  software"  whitepaper
http://www.security.nnov.ru/advisories/content.asp to include new way to
bypass content filtering software. It confirmed to work with NAV and not
to work with McAffee and KAV (AVP).

Symantec      was     contected     via     [email protected]     and
[email protected] and didn't reply.

 13.Case sensitivity of Content-Type and Content-Disposition

 Most MUAs ignore case of Content-Type and Content-Disposition headres
 while content filtering software may behave in different way. It makes
 it possible to bypass content-filtering software by using header like

         CONTENT-type: text/plain;

P.S. thanks to everyone on vuln-dev who participated in testing.

