[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-47339-7

Platform: cpe:/o:microsoft:windows_server_2016Date: (C)2017-08-03   (M)2023-07-04



Disables the lock screen slide show settings in PC Settings and prevents a slide show from playing on the lock screen. By default, users can enable a slide show that will run after they lock the machine. If you enable this setting, users will no longer be able to modify slide show settings in PC Settings, and no slide show will ever start. Vulnerability: This may allow a malicious agent to access the slide show that may have confidential information. Counter Measure: Enable this policy setting and users cannot access the slide show from a locked state. Potential Impact: Users must unlock the device to access and run the screen slide show. Fix: (1) GPO: Computer ConfigurationAdministrative TemplatesControl PanelPersonalizationPrevent enabling lock screen slide show (2) REG: HKEY_LOCAL_MACHINESoftwarePoliciesMicrosoftWindowsPersonalization!NoLockScreenSlideshow


Parameter:

[enable/disable]


Technical Mechanism:

(1) GPO: Computer Configuration\Administrative Templates\Control Panel\Personalization\Prevent enabling lock screen slide show (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Personalization!NoLockScreenSlideshow

CCSS Severity:CCSS Metrics:
CCSS Score : 7.4Attack Vector: LOCAL
Exploit Score: 1.4Attack Complexity: HIGH
Impact Score: 5.9Privileges Required: NONE
Severity: HIGHUser Interaction: NONE
Vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:40336


OVAL    1
oval:org.secpod.oval:def:40336
XCCDF    2
xccdf_org.secpod_benchmark_general_Windows_Server_2016
xccdf_org.secpod_benchmark_NIST_800_171_R1_Windows_Server_2016

© SecPod Technologies