Windows NT network Guest logon |
---|
Risk Level: | Low | Check or Attack Name: Network Guest Logon |
---|---|---|
Platforms: | Windows NT | |
Description: | The Guest account is allowed to log on from the network. This configuration may allow an attacker unauthorized remote access to a machine. Access can be improperly elevated if guest accounts are assigned to the wrong group, or if guests are granted stronger than normal user rights. |
|
Remedy: | Since Windows NT 4.0 comes with the Guest account disabled by default, many administrators may find it sufficient to leave the account disabled. —OR—To explicitly grant network logon rights, follow these steps:
|
|
References: |
Know Your Risks |