A county assessment finds plaintext passwords in AD descriptions or scripts stored in SYSVOL. What finding class does this represent?
Select an answer to reveal the explanation.
Short Explanation
If the password is sitting in a share that half the domain can read, it is not a secret anymore — it is a flyer on a bulletin board. SYSVOL and script plaintext creds are a classic AD finding for a reason.
Full Explanation
SYSVOL and related script or description fields are often readable by a wide set of domain principals. Storing plaintext passwords there creates durable credential exposure, including historical GPP-style themes. This is not a backup control or a merely cosmetic note. Removing secrets from broadly readable AD locations is a standard remediation.