[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Enable user control over installs

ID: oval:org.secpod.oval:def:8814Date: (C)2013-01-21   (M)2023-05-09
Class: COMPLIANCEFamily: windows




The Enable user control over installs machine setting should be configured correctly. Permits users to change installation options that typically are available only to system administrators. This setting bypasses some of the security features of Windows Installer. It permits installations to complete that otherwise would be halted due to a security violation. The security features of Windows Installer prevent users from changing installation options typically reserved for system administrators, such as specifying the directory to which files are installed. If Windows Installer detects that an installation package has permitted the user to change a protected option, it stops the installation and displays a message. These security features operate only when the installation program is running in a privileged security context in which it has access to directories denied to the user. This setting is designed for less restrictive environments. It can be used to circumvent errors in an installation program that prevents software from being installed. Fix: (1) GPO: Computer Configuration\Administrative Templates\Windows Components\Windows Installer\Enable user control over installs (2) KEY: HKLM\Software\Policies\Microsoft\Windows\Installer\EnableUserControl

Platform:
Microsoft Windows Server 2008 R2
Reference:
CCE-10906-6
CPE    1
cpe:/o:microsoft:windows_server_2008:r2
CCE    1
CCE-10906-6
XCCDF    4
xccdf_org.secpod_benchmark_NIST_800_53_r4_Windows_2008_R2
xccdf_org.secpod_benchmark_HIPAA_45CFR_164_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_general_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_PCI_3_2_Windows_Server_2008_R2
...

© SecPod Technologies