Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror
Security

Submission + - Password exposure in Lotus Notes (heise-security.co.uk)

juct writes: "A debug function in version 5 and up of Lotus Notes can be used to write a file containing the new password in plain text when a user password is changed. This function has been designed to bring more transparency into password quality verification. If two additional lines are entered in the Notes.INI configuration file, Notes will log the evaluation. Accordings to heise Security the configuration change can even be activated from remote by an administrator."
This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Password exposure in Lotus Notes

Comments Filter:

Matter will be damaged in direct proportion to its value.

Working...