[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-44427-3

Platform: cpe:/o:microsoft:windows_10Date: (C)2016-09-23   (M)2023-07-04



Select the 'Let Windows apps access the calendar' to user_is_in_control This policy setting specifies whether Windows apps can access the calendar. If you choose the "User is in control" option, employees in your organization can decide whether Windows apps can access the calendar by using Settings > Privacy on the device. If you choose the "Force Allow" option, Windows apps are allowed to access the calendar and employees in your organization cannot change it. If you choose the "Force Deny" option, Windows apps are not allowed to access the calendar and employees in your organization cannot change it. If you disable or do not configure this policy setting, employees in your organization can decide whether Windows apps can access the calendar by using Settings > Privacy on the device. If an app is open when this Group Policy object is applied on a device, employees must restart the app or device for the policy changes to be applied to the app. Counter Measure: Enable and configure this setting to "Force Deny" depending on your organization's requirements. Potential Impact: Windows apps are not allowed to access the calendar and employees in your organization cannot change it.


Parameter:

[user is in control/force allow/force deny]


Technical Mechanism:

(1) GPO: Computer ConfigurationAdministrative TemplatesWindows ComponentsApp PrivacyLet Windows apps access the calendar (2) REG: HKEY_LOCAL_MACHINESoftwarePoliciesMicrosoftWindowsAppPrivacyLetAppsAccessCalendar

CCSS Severity:CCSS Metrics:
CCSS Score : 4.9Attack Vector: LOCAL
Exploit Score: 1.4Attack Complexity: HIGH
Impact Score: 3.4Privileges Required: NONE
Severity: MEDIUMUser Interaction: NONE
Vector: AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:LScope: UNCHANGED
 Confidentiality: LOW
 Integrity: LOW
 Availability: LOW
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:35443


OVAL    1
oval:org.secpod.oval:def:35443
XCCDF    2
xccdf_org.secpod_benchmark_NIST_800_171_R1_Windows_10
xccdf_org.secpod_benchmark_general_Windows_10

© SecPod Technologies