CCE-37352-2Platform: win2012r2 | Date: (C)2015-10-08 (M)2022-10-10 |
Remove Change Password
This policy setting prevents users from changing their Windows password on demand.
If you enable this policy setting, the 'Change Password' button on the Windows Security dialog box will not appear when you press Ctrl+Alt+Del.
However, users are still able to change their password when prompted by the system. The system prompts users for a new password when an administrator requires a new password or their password is expiring.
Parameter:
Technical Mechanism:
(1) GPO: User Configuration\Administrative Templates\System\Ctrl+Alt+Del Options!Remove Change Password
(2) REG: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System!DisableChangePassword
CCSS Severity: | CCSS Metrics: |
CCSS Score : | Attack Vector: |
Exploit Score: | Attack Complexity: |
Impact Score: | Privileges Required: |
Severity: | User Interaction: |
Vector: | Scope: |
| Confidentiality: |
| Integrity: |
| Availability: |
| |
References: Resource Id | Reference |
---|
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:27949 |
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:27949 |
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:27949 |
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:27949 |