Full Disclosure mailing list archives
RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access
From: "Michael Scheidell" <scheidell () secnap net>
Date: Sat, 18 Sep 2004 11:38:55 -0400
during the installation of retail xp pro, you are advised strongly to add a password to the administrator account. do the research fully, or believe that we already did it. get a copy of retail xp pro and do a clean install, photograph the screens and prove me wrong. -----Original Message----- From: Chris Norton [mailto:kicktd_list () hotmail com] Sent: Friday, September 17, 2004 4:34 PM To: Michael Scheidell; mwwilson () navo hpc mil; bugtraq () securityfocus com; vulnwatch () vulnwatch org; full-disclosure () lists netsys com Subject: Re: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Let me clear up what I ment to say: The blank administrator account is not all IBM's fault. If IBM is to add that screen, Which has been there since XP came out. How many people would set a password? Talking about the general home user. I would say about 60% of XP installs on a home computer do not have an administrator password and the local login administrator/blank has been known about for some time. The reseting the password message is indeed not from IBM but in Microsoft XP itself. I just went to change my administrator password and indeed I got this warning. -- Chris Norton UAT Student Software Engineering Network Defense _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Re: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access, (continued)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 17)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 17)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Wilson, Contractor (Sep 17)
- RE: RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Phillip R. Paradis (Sep 17)
- Re: RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Valdis . Kletnieks (Sep 21)
- RE: RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Phillip R. Paradis (Sep 17)
- Re: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Chris Norton (Sep 18)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Wilson, Contractor (Sep 17)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 18)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 18)
- RE: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 18)
- Re: Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access RandallM (Sep 18)