Korean
<< Back
VID 27116
Severity 30
Port 135
Protocol TCP
Class DB
Detailed Description The MS SQL server does not limit the maximum password age.

* Platforms Affected:
Microsoft SQL Server
Recommendation * Windows
After running Administrative Tools / Local Security Policy (secpol.msc), verify that Account Policy / Password Policy Maximum Password Age is 90 or less
* MSSQL
[SQL Server Management Studio/ Connect to Diagnostic Server/ Account Properties] Make sure [Force Password Expiration] is set to Enabled
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)