Check: WN12-UC-000012
Windows 2012 IAVM:
WN12-UC-000012
(in version v1 r30)
Title
Users must be prevented from sharing files in their profiles. (Cat II impact)
Discussion
Allowing users to share files in their profiles may provide unauthorized access or result in the exposure of sensitive data.
Check Content
If the following registry value does not exist or is not configured as specified, this is a finding: Registry Hive: HKEY_CURRENT_USER Registry Path: \Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ Value Name: NoInPlaceSharing Type: REG_DWORD Value: 1
Fix Text
Configure the policy value for User Configuration -> Administrative Templates -> Windows Components -> Network Sharing -> "Prevent users from sharing files within their profile" to "Enabled".
Additional Identifiers
Rule ID:
Vulnerability ID: V-15727
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |