CCE-47819-8Platform: cpe:/o:microsoft:windows_server_2016 | Date: (C)2022-09-02 (M)2023-07-04 |
This policy setting removes the Spotlight collection setting in Personalization, rendering the user unable to select and subsequentyly download daily images from Microsoft to desktop.
If you enable this policy, Spotlight collection will not be available as an option in Personalization settings.
If you disable or do not configure this policy, Spotlight collection will appear as an option in Personalization settings, allowing the user to select Spotlight collection as the Desktop provider and display daily images from Microsoft on the desktop.
Fix:
(1) GPO: Computer ConfigurationAdministrative TemplatesWindows ComponentsCloud ContentTurn off Spotlight collection on Desktop
(2) REG: HKEY_LOCAL_MACHINESoftwarePoliciesMicrosoftWindowsCloudContent!DisableSpotlightCollectionOnDesktop
Parameter:
[Enabled/Disabled]
Technical Mechanism:
(1) GPO: Computer Configuration\Administrative Templates\Windows Components\Cloud Content\Turn off Spotlight collection on Desktop
(2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\CloudContent!DisableSpotlightCollectionOnDesktop
CCSS Severity: | CCSS Metrics: |
CCSS Score : 7.0 | Attack Vector: LOCAL |
Exploit Score: 1.0 | Attack Complexity: HIGH |
Impact Score: 5.9 | Privileges Required: LOW |
Severity: HIGH | User Interaction: NONE |
Vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H | Scope: UNCHANGED |
| Confidentiality: HIGH |
| Integrity: HIGH |
| Availability: HIGH |
| |
References: Resource Id | Reference |
---|
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:83519 |