[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255716

 
 

909

 
 

198991

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-99364-2

Platform: cpe:/o:microsoft:windows_11Date: (C)2023-03-16   (M)2023-07-07



This setting controls whether or not Windows Installer should use system permissions when it installs any program on the system. Note: This setting appears both in the Computer Configuration and User Configuration folders. To make this setting effective, you must enable the setting in both folders. Caution: If enabled, skilled users can take advantage of the permissions this setting grants to change their privileges and gain permanent access to restricted files and folders. Note that the User Configuration version of this setting is not guaranteed to be secure. Fix: (1) GPO: User ConfigurationPoliciesAdministrative TemplatesWindows ComponentsWindows InstallerAlways install with elevated privileges (2) REG: HKEY_USERS[USER SID]SoftwarePoliciesMicrosoftWindowsInstaller:AlwaysInstallElevated


Parameter:

[enable/disable]


Technical Mechanism:

(1) GPO: User Configuration\Policies\Administrative Templates\Windows Components\Windows Installer\Always install with elevated privileges (2) REG: HKEY_USERS\[USER SID]\Software\Policies\Microsoft\Windows\Installer:AlwaysInstallElevated

CCSS Severity:CCSS Metrics:
CCSS Score : 7.8Attack Vector: LOCAL
Exploit Score: 1.8Attack Complexity: LOW
Impact Score: 5.9Privileges Required: LOW
Severity: HIGHUser Interaction: NONE
Vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HScope: UNCHANGED
 Confidentiality: HIGH
 Integrity: HIGH
 Availability: HIGH
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:88150


OVAL    1
oval:org.secpod.oval:def:88150
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_11

© SecPod Technologies