Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-15609 | DG0014-SQLServer9 | SV-24129r1_rule | DCFA-1 | Medium |
Description |
---|
Demonstration and sample database objects and applications present publicly known attack points for malicious users. These demonstration and sample objects are meant to provide simple examples of coding specific functions and are not developed to prevent vulnerabilities from being introduced to the DBMS and host system. |
STIG | Date |
---|---|
Microsoft SQL Server 2005 Instance Security Technical Implementation Guide | 2015-04-03 |
Check Text ( None ) |
---|
None |
Fix Text (F-24673r1_fix) |
---|
Drop sample or demonstration databases from production instances. Verify that no production objects have been stored in demonstration or sample databases prior to dropping. DROP DATABASE [database name] |