Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [Full-disclosure] Microsoft Windows Active Directory Logon Hours User Enumeration Weakness |
|---|---|
| Date: | Thu, 31 May 2007 16:11:22 +0100 |
Windows Server 2003 can be configured <http://support.microsoft.com/kb/816666> to restrict the hours and days that a user may log on to a Windows Server 2003 domain. This could lead to username enumeration.
*Issue*:- Microsoft Windows Active Directory Username Enumeration
*Criticality*:- Less Critical
*Impact*:- Exposure of system information
*Description*:- It has been identified that the Microsoft windows Active Directory contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the Windows Domain Controller returns different error messages depending on if a valid username was supplied via windows terminal services. This only happens for the user accounts that have time restrictions set and when these accounts are accessed during restricted time. This can be exploited to help enumerate valid usernames resulting in a loss of confidentiality.
*Vendors response*:- "We will NOT be issuing a security update for this issue. It is likely that in a next version or service pack of the product we may consider making changes, but not before then".
*Screenshots:* 1. Error returned When Account is Accessed at Restricted time<http://www.notsosecure.com/folder2/2007/05/27/logon-time-restrictions-in-a-domain-in-windows-server-2003-allows-username-enumeration/error-returned-when-account-is-accessed-at-restricted-time/> 2. Error returned When Account is Accessed at Permitted time<http://www.notsosecure.com/folder2/wp-content/uploads/2007/05/error-when-account-is-accessed-at-permitted-time.PNG>
Thanks
Sid www.notsosecure.com
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [Full-disclosure] [ GLSA 200705-24 ] libpng: Denial of Service, Raphael Marichez |
|---|---|
| Next by Date: | [Full-disclosure] [ GLSA 200705-25 ] file: Integer overflow, Raphael Marichez |
| Previous by Thread: | [Full-disclosure] [ GLSA 200705-24 ] libpng: Denial of Service, Raphael Marichez |
| Next by Thread: | [Full-disclosure] [ GLSA 200705-25 ] file: Integer overflow, Raphael Marichez |
| Indexes: | [Date] [Thread] [Top] [All Lists] |