SQL Server Cleartext 'sql' Account 'sql' Password Authentication (deprecated)

High Nessus Network Monitor Plugin ID 1130

Synopsis

The remote host is configured with default or easily-guessed credentials.

Description

The remote SQL server allows logins with the 'sql' password set to 'sql'.

Solution

Require the SQL server to utilize an encrypted login and ensure that passwords are not trivially guessed.

Plugin Details

Severity: High

ID: 1130

File Name: 1130.prm

Family: Database

Published: 2004/08/20

Modified: 2016/01/15

Dependencies: 1118

Nessus ID: 10862

Risk Information

Risk Factor: High