Solved

Wrong mailbox is pulled up when accessing OWA with correct credentials

Posted on 2007-03-27
2
928 Views
Last Modified: 2012-08-14
I am having issues with remote users that use OWA pulling up other users Mailboxes when putting in their credentials. This has only happened in one instance so far. Three different users are gettting one particular users Mailbox when they log on to OWA. Any ideas?
0
Comment
Question by:darovitz
2 Comments
 
LVL 1

Accepted Solution

by:
shinatykt earned 500 total points
ID: 18801447
Microsoft has reported a weakness in Exchange Server 2003, which is caused due to a bug in the handling of NTLM authentication in Outlook Web Access.
Systems configured to use NTLM instead of Kerberos (which is the default authentication scheme) may provide users access to mailboxes belonging to other users, which have recently accessed their mailbox. Microsoft Sharepoint Services may cause the configuration to be changed so that NTLM authentication is used instead of Kerberos. It is not possible for a malicious user to control which mailbox to access.

this might help - http://www.microsoft.com/downloads/details.aspx?FamilyId=9542F949-D09B-4199-A837-FBCFC0567676&displaylang=en
0
 

Author Comment

by:darovitz
ID: 18802446
the tool will not help because our exchange server is updated with the latest service packs and the above is an old tool.  Any other suggestions as this user is really irrated as others can see his email...  I wouldn't be happy either.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Local Continuous Replication is a cost effective and quick way of backing up Exchange server data. The following article describes the steps required to configure Local Continuous Replication. Also, the article tells you how to restore from a backup…
MS Outlook is a world-class email client application that is mainly used for e-communication globally.  In this article, we will discuss the basic idea about MS Outlook, its advanced features, and types of MS Outlook File formats.
In this video we show how to create an email address policy in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Mail Flow…
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question