VID |
28346 |
Severity |
40 |
Port |
135 |
Protocol |
TCP |
Class |
WMI |
Detailed Description |
Remote system allows system shutdown who not logon system. Logon window 'Shut down' button is activated, the unauthorized user or authorized user of the non-intentional mistakes may cause harmful interference to the normal services.
* Platforms Affected: Microsoft Windows Any version |
Recommendation |
1. Run> SECPOL.MSC > Local Policies> Security Options 2. Disable 'Shutdown: Allow system to be shut down without having to log on' |
Related URL |
(CVE) |
Related URL |
(SecurityFocus) |
Related URL |
(ISS) |
|