Hi,
If a user forgot it - yes, logon as local administrator, go into control panel -> administrative tools -> computer management -> users and groups -> users and you can right click on the user and reset their password.
If however this is a networked machine, a network admin can reset it from the server (domain controller or active directory host).
If the local administrator password is forgotten and unknown, then there are a few password recovery or reset tools available on the internet.
John