hidden hit counter
Welcome to WindowsForumz.com!
FAQFAQ    SearchSearch      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

Huge security issue??????

 
   Windows XP (Home) -> Security Admin RSS
Next:  Agere Win Modem  
Author Message
Brad Pears1

External


Since: Apr 06, 2004
Posts: 24



(Msg. 1) Posted: Tue Sep 06, 2005 4:21 pm
Post subject: Huge security issue??????
Archived from groups: microsoft>public>windowsxp>security_admin (more info?)

I created a local "restricted" account on one of our Windwos XP Pro SP2
machines using the admin account. I then discovered later that that user had
somehow been given "administrator" rights on that machine.

Upon further investigation, I discovered that if you log on to an XP machine
using a "restricted" account, you can simply go into users and groups and
give your self "administrative" rights...

How can this be?? Does this not sound just WRONG to anyone?? Am I missing
something here??

What account should I be using to ensure that the user logging on can not
change their account type?? (we are using the CTRL/ALT/DEL method of
logging on - not the "easy" log on screen...

Thanks,

Brad

 >> Stay informed about: Huge security issue?????? 
Back to top
Login to vote
CReWdog

External


Since: Sep 07, 2005
Posts: 1



(Msg. 2) Posted: Wed Sep 07, 2005 1:55 pm
Post subject: Re: Huge security issue?????? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

Brad Pears wrote:
> *I created a local "restricted" account on one of our Windwos XP Pro
> SP2
> machines using the admin account. I then discovered later that that
> user had
> somehow been given "administrator" rights on that machine.
>
> Upon further investigation, I discovered that if you log on to an XP
> machine
> using a "restricted" account, you can simply go into users and groups
> and
> give your self "administrative" rights...
>
> How can this be?? Does this not sound just WRONG to anyone?? Am I
> missing
> something here??
>
> What account should I be using to ensure that the user logging on can
> not
> change their account type?? (we are using the CTRL/ALT/DEL method
> of
> logging on - not the "easy" log on screen...
>
> Thanks,
>
> Brad *

Hi

You did remember to password protect the safe mode admin account?? If
you didn't all he had to do was boot into safe mode & log into the
built in admin account there & change his own account to admin, then
log out & boot up normally & log into his own account complete with
admin rights.
You need to check the safe mode admin account has a password set (by
default, it doesn,t).

Regards

CReWdog



--
CReWdog
------------------------------------------------------------------------
Posted via http://www.mcse.ms
------------------------------------------------------------------------
View this thread: http://www.mcse.ms/message1836562.html

 >> Stay informed about: Huge security issue?????? 
Back to top
Login to vote
Display posts from previous:   
Related Topics:
Security issue?? - I was recently advised of an issue where a user with a local "restricted" account on an XP Pro machine, somehow managed to grant himself administrative rights... Now, unless he knew the local admin password, or the password of one of the ot...

security issue - dear all by mistake i remove all permission to open an fplder ,,, till my permessions as administrator, now i can't open the folder ,,, and get access denide message ,,, plz advice me ,, how to open the folder again ,, i work under domain environmen...

Is this a security issue? -

Windows XP update - Jpeg security issue - Hi, I want to protect my PC against this new security issue with Jpeg files. I have XP home, I don't wish to install Service Pack 2 as it changes the operating system significantly. How can I protect my PC against this potential security breach? When...

XP User Profile Security Issue - We have migrated hundreds of XP desktops from Novell to MS ADS. When it comes to 3 desktops which share C drive to each other, user B on Computer B can access to user A's user profile. Same as user A when he can get access to user B 's My..
   Windows XP (Home) -> Security Admin All times are: Eastern Time (US & Canada)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You can edit your posts in this forum
You can delete your posts in this forum
You can vote in polls in this forum

Categories:
  Windows XP
 Win 2000/NT/98/ME
 Windows Vista!


[ Contact us | Terms of Service/Privacy Policy ]