Bugtraq mailing list archives
... Tiny Personal Firewall ...
From: Andrew Barkley <andrew.barkley () usa net>
Date: 28 Feb 2002 14:53:44 SAST
Hi ... Scanning hosts running the Tiny Personal Firewall (2.0.15a) on W2K workstations that have been locked (ctl + alt + del) The popup alert/dialogue jumps to the foreground, thus open to accept permit/deny input from the local console, even when the workstations are locked (ctl + alt + del). Thus an untrusted individual whom has local access to individuals workstations can scan a workstation/network, wait for the popup alert dialogue and enter "permit" on unattended (locked workstations) without the owners permission/knowledge, No need to first unlock (ctl + alt + del) ... CHEERS ...
Current thread:
- ... Tiny Personal Firewall ... Andrew Barkley (Feb 28)
- Re: ... Tiny Personal Firewall ... Maher Odeh (Mar 01)
- Re: ... Tiny Personal Firewall ... Scott Nursten (Mar 05)
- Re: ... Tiny Personal Firewall ... Dave Ahmad (Mar 04)
- Re: ... Tiny Personal Firewall ... Tom Geldner (Mar 05)
- Re: Tiny Personal Firewall elfs (Mar 05)
- Re: ... Tiny Personal Firewall ... J.Brown (Ender/Amigo) (Mar 06)
- Re: ... Tiny Personal Firewall ... Dave Ahmad (Mar 04)