Account operator includes unallowed user

Risk Level: Low risk vulnerability  Low

Check or Attack Name: Account Operator

Platforms: Windows NT
Description:

A user was found in the Account Operators group that is not typically a member of this group. Verify that the user should be a member of this group.

Remedy:

If the user should not be a member of this group, remove the user from the group.

To remove a user from a group, follow these steps:

  1. Open User Manager. From the Windows NT Start menu, select Programs, Administrative Tools (Common), User Manager.
  2. Select the user in the list.
  3. From the User menu, select Properties to display the User Properties dialog box.
  4. Click Groups to display the Group Memberships dialog box.
  5. From the Member of list, select Account Operators and click Remove.
  6. Click OK.
References:

X-Force Logo
Know Your Risks