[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-37602-0

Platform: cpe:/o:microsoft:windows_server_2012::r2Date: (C)2015-10-08   (M)2023-07-04



Turn on Script Execution This settings lets you configure the script execution policy, controlling what scripts are allowed to run. If you enable this setting, the scripts selected in the drop down list will be allowed to run. The 'Allow only signed scripts' setting allows script to execute only if they are signed by a trusted publisher. The 'Allow local scripts and remote signed scripts' setting allows any local scrips to run; scripts that originate from the Internet must be signed by a trusted publisher. The 'Allow all scripts' setting allows all scripts to run. If you disable this setting, no scripts are allowed to run. Note: This setting exists under both 'Computer Configuration' and 'User Configuration' in the group policy editor. The 'Computer Configuration' has precedence over 'User Configuration.' If this policy setting is not configured or disabled, the setting reverts to a per-machine preference setting; the default if that is not configured is 'No scripts allowed.'


Parameter:

[enable/disable]


Technical Mechanism:

(1) GPO: Computer ConfigurationAdministrative TemplatesWindows ComponentsWindows PowerShell!Turn on Script Execution (2) REG: HKEY_LOCAL_MACHINESoftwarePoliciesMicrosoftWindowsPowerShell!EnableScripts

CCSS Severity:CCSS Metrics:
CCSS Score : 7.8Attack Vector: LOCAL
Exploit Score: 1.8Attack Complexity: LOW
Impact Score: 5.9Privileges Required: NONE
Severity: HIGHUser Interaction: REQUIRED
Vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:28110


OVAL    1
oval:org.secpod.oval:def:28110
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_2012_R2

© SecPod Technologies