1.9.32 Microsoft network client: Send unencrypted password to third-party SMB servers

Information

This control defines whether a server can transmit passwords in plaintext across the network to other computers that offer SMB services.

Solution

Make sure 'Microsoft network client: Send unencrypted password to third-party SMB servers' is Disabled.

See Also

https://workbench.cisecurity.org/files/10

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-5(7), CCE|CCE-2272-3

Plugin: Windows

Control ID: a1b0699a3ae2c7dd9f8d1edaff9eb0c43c6ace89d07f7671b1407cc8453af1bb