|
|||||||||||
|
Re: Citrix ClearPassword (launch.ica)
From: <miguel.dilaj(at)pharma.novartis.com>
Date: Tue Feb 25 2003 - 05:15:22 EST In http://www.dabcc.com/nfuse/Docs/ica_file_explained.htm you've this:
Password=
ClearPassword=
>From this information, it seems that the string 'D4239AF390DB09' isn't a hash, but the password itself (sounds strange, isn't it? But
"wirepair" <wirepair@roguemail.net>
To: vuln-dev@securityfocus.com, pen-test@securityfocus.com
cc:
Subject: Citrix ClearPassword (launch.ica)
while doing a pen-test I noticed after stealing launch.ica
files from a users IE cache directory, they have a
different ClearPassword= field. It appears of
AutologonAllowed is set to ON this will be saved after
using nFUSE to login to the citrix metaframe. These fields
are as follows:
P.S: I tried to just use the launch ica but it tries to log in to the metaframe host itself and not the domain so the login attempt fails and the ***** is erased. This is why i'm in need of knowing how to get the password from this hash. For the best comics, toys, movies, and more, please visit <http://www.tfaw.com/?qt=wmf> <Pre>Do you know the base address of the Global Offset Table (GOT) on a Solaris 8 box? CORE IMPACT does.</Pre> <A href="http://www.securityfocus.com/core"> http://www.securityfocus.com/core</A> <Pre>Do you know the base address of the Global Offset Table (GOT) on a Solaris 8 box? CORE IMPACT does.</Pre> <A href="http://www.securityfocus.com/core"> http://www.securityfocus.com/core</A> Received on Tue Feb 25 13:29:21 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:33 EDT |
||||||||||
|
|||||||||||