Microsoft

Backoffice

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 15.93%
  • Published 12.08.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft BackOffice 4.0 and 4.5, when configured to be accessible by other systems, allows remote attackers to bypass authentication and access the administrative ASP pages via an HTTP request with an authorization type (auth_type) that is not blank...

  • EPSS 7.88%
  • Published 12.02.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted.