Skip to content

H3-2020-0008

Guest Account Enabled

Category SECURITY_MISCONFIGURATION
Base Score 3.0

Description

The default Guest account allows unauthenticated network users to log on as a Guest with no password. These unauthorized users could access any resources that are accessible to the Guest account over the network

Impact

Enabled Guest accounts can allow attackers access to shared resources without supplying credentials or a password. Sensitive information may be gathered and used to launch additional attacks

References