[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251625

 
 

909

 
 

196370

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-96510-3

Platform: cpe:/o:microsoft:windows_11Date: (C)2022-05-07   (M)2023-07-04



This policy setting allows the administrator to assign a specified credential provider as the default credential provider. If you enable this policy setting, the specified credential provider is selected on other user tile. If you disable or do not configure this policy setting, the system picks the default credential provider on other user tile. Note: A list of registered credential providers and their GUIDs can be found in the registry at HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionAuthenticationCredential Providers. Countermeasure: Enable and configure this setting. Potential Impact: Users could be prompted to use a different credential provider by default.


Parameter:

[defaultcredentialprovider_clsid]


Technical Mechanism:

(1) GPO: Computer Configuration\Administrative Templates\System\Logon\Assign a default credential provider (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\System!DefaultCredentialProvider

CCSS Severity:CCSS Metrics:
CCSS Score : 6.6Attack Vector: NETWORK
Exploit Score: 0.7Attack Complexity: HIGH
Impact Score: 5.9Privileges Required: HIGH
Severity: MEDIUMUser Interaction: NONE
Vector: AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:79520


OVAL    1
oval:org.secpod.oval:def:79520
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_11

© SecPod Technologies