Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2002-0736

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Microsoft BackOffice 4.0 and 4.5, when configured to be accessible by other systems, allows remote attackers to bypass authentication and access the administrative ASP pages via an HTTP request with an authorization type (auth_type) that is not blank.
0
Attacker Value
Unknown

CVE-1999-0372

Disclosure Date: February 12, 1999 (last updated February 22, 2025)
The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted.
0