Re: Remote Administration on W2K

From: ,,, (fg@tiscali.be)
Date: 08/03/01


Date: Fri, 3 Aug 2001 08:17:25 +0200
To: Frank Heyne <fh@rcs.urz.tu-dresden.de>
Subject: Re: Remote Administration on W2K
Message-ID: <20010803081725.A16330@mailadm.tiscalinet.be>
From: ",,," <fg@tiscali.be>

Make 'su root' and type in your password, it shall be sent in clear text ;)

The moment you write down a password can be another one than the first
authentication : you can login to any service from the box you logged in
the first time

On Wed, Aug 01, 2001 at 08:16:05AM +0200, Frank Heyne wrote:
> On 31 Jul 01, at 18:00, Igor Kurtovic wrote regarding VNC:
>
> > the password sent is cleartext...
>
> Can you prove this statement?
>
> In the VNC FAQ 54 I can read they use some kind of challange response for
> authentication, and no clear passwords are sent. So I wonder how you come
> to your assertion?
>
> Greetings
>
> Frank Heyne



Relevant Pages

  • Re: [SLE] MozillaFirefox 0.9.1
    ... > This isn't about having to run it as root, this is when you run it for the ... > first time as a user. ... > of authentication, but that's not true. ... Yeah, it makes sense, and yes, I did have 0.8 before. ...
    (SuSE)
  • RE: Remote Administration on W2K
    ... Subject: Remote Administration on W2K ... It is a VNC password decoder. ... > the first time ... >> authentication, and no clear passwords are sent. ...
    (Security-Basics)
  • Re: Logon Window Appears on siblings of authenticated directories
    ... Windows Auth, and a physical directory under root. ... authentication when my user identity was recognized on the machine -- which ... when virtual directories and authentication are ...
    (microsoft.public.inetserver.iis)
  • Re: Eratosthenes sliding sieve
    ... I didn't publish the original code that ran first time. ... up till CONSTANT ppn. ... maximum number of prime divisors below limit. ... 256 CONSTANT root ...
    (comp.lang.forth)
  • Re: Forms Authentication - Cookie not being generated...
    ... It was very interesting and I learnt plenty from just taking ... Never thought I could secure a directory from one root ... The login page is ... > access with Forms authentication so your login page (and all protected ...
    (microsoft.public.dotnet.framework.aspnet.security)

Quantcast