> 2. Even if they don't have access locally, you give them access to
the box
> over the network. Pick any one of Microsoft's critical (Remote Admin
> Access) vulnerabilities coming out each month to gain access to the
box with
> a legitimate User ID and Pass to the system.
Okay, I buy the example of buffer overflows in SMB.
Well, you also need SMB on a DC, GPOs and logon scripts are accessed
that way. So this is a non-issue as well.
the box
> over the network. Pick any one of Microsoft's critical (Remote Admin
> Access) vulnerabilities coming out each month to gain access to the
box with
> a legitimate User ID and Pass to the system.
Okay, I buy the example of buffer overflows in SMB.
Well, you also need SMB on a DC, GPOs and logon scripts are accessed
that way. So this is a non-issue as well.
Regards,
Jens
------------------------------------------------------------------------
---
------------------------------------------------------------------------
---
[ reply ]