Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

Can access domain network resources while logged on as a local administrator on a workstation.

$
0
0

Please help me in figuring this one out.

I have a Server 2003 R2 domain with a bunch of workstations and some servers having the same local admin password.

I know it is not good practice, but that's an issue of it's own.

The issue is that when I log on as that local admin (WORKSTATION\Administrator) I can suddenly browse to ALL the hidden shares(c$, d$) of ALL the servers and workstations that have the same local admin password. If I change password or disable that account the symptom goes away.  I though if I do try accessing hidden shares it should still ask me for credentials, after all these are local credentials on DIFFERENT machines. I checked to make sure that the credentials are not cached and as far as I can tell they are not. This really freaks me out.

This is kind of a big deal because even if I change local passwords on servers, I'm not sure we will be setting up different local Administrator password for each workstation.

My question is: Is this the a normal/documented Windows behavior? If not why is this happening? Can someone please explain how is this possible?





Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>