| VID |
27010 |
| Severity |
40 |
| Port |
139 |
| Protocol |
TCP |
| Class |
SMB |
| Detailed Description |
A Domain Administrator account with the account name as the password exists, and it's possible to log into the system with this account.
Domain account is given logon privileges to a domain and access privileges to all resources in the domain for which they have been granted access. This account information is stored in the active directory on the domain controller. Account management and password management is important in preventing unauthorized access to your system. If local Administrator account is used the simple password, attackers can guess the password and log on the system with account easily. And they may access to sensitive information as the files, the printer and system resources as the user/group account, security policy with the administrator privileges. You should make sure that only the proper users are member of this Administrator group. This check attempts to log on using account name as the password remotely for only domain accounts that are part of the Administrator group, and displays the name of the accounts that logged on successfully.
* References: http://www.iss.net/security_center/static/1357.php |
| Recommendation |
Change password to be difficult to guess.
To change the password
For Windows NT: 1. Open User Manager. 2. Select the user from the list. 3. Select 'Properties' entry from the User menu. 4. Type new password and confirm new password.
For a Windows 2000 domain: 1. Start Active Directory Users and Computers Management Console (dsa.msc) from a command prompt. 2. Open the Users folder and right-click the user Object. 4. Select "Reset Password". 5. Type new password and confirm password.
For a stand-alone Windows 2000 computer: 1. Start Local Users and Groups Management Console (lusrmgr.msc) from a command prompt. 2. Open the Users folder and right-click the user object. 4. Select "Set Password". 5. Type new password and confirm new password.
For Windows XP, 2003, VISTA, 7, 2008, 8, 2012, 10, 2016, 2019: 1. Start menu, select Run and then execute lusrmgr.msc 2. Open [Local Users and Groups] -> [Users] folder and select the User. 3. Right mouse click on the user entry. 4. Select "Set Password". 5. Type new password and confirm new password. |
| Related URL |
CVE-1999-0505 (CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
(ISS) |
|