2.1
CVSSv2

CVE-1999-0372

Published: 12/02/1999 Updated: 07/11/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows nt

microsoft windows 2000

microsoft backoffice 4.0

Exploits

source: wwwsecurityfocuscom/bid/228/info During installation of BackOffice 40, a file called rebootini is created and stored in the \Program Files\Microsoft BackOffice directory This file contains clear-text usernames and passwords for several services that may be created during installation These services include: SQL Executive Logon ...