[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CCE
view XML

CCE-43896-0

Platform: win10Date: (C)2016-09-23   (M)2022-10-10



Disable: 'Specify threats upon which default action should not be taken when detected' for Threats_ThreatIdDefaultAction This policy setting customize which remediation action will be taken for each listed Threat ID when it is detected during a scan. Threats should be added under the Options for this setting. Each entry must be listed as a name value pair. The name defines a valid Threat ID, while the value contains the action ID for the remediation action that should be taken. Valid remediation action values are: 2 = Quarantine 3 = Remove 6 = Ignore Counter Measure: Configure this setting depending on your organization's requirements. Potential Impact: The specified remediation action will be set to your organization's security requirements, which may be different than the user configured setting.


Parameter:


Technical Mechanism:

(1) GPO: Computer Configuration\Administrative Templates\Windows Components\Windows Defender\Threats\Specify threats upon which default action should not be taken when detected (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\Threats\Threats_ThreatIdDefaultAction

CCSS Severity:CCSS Metrics:
CCSS Score : Attack Vector:
Exploit Score: Attack Complexity:
Impact Score: Privileges Required:
Severity: User Interaction:
Vector: Scope:
 Confidentiality:
 Integrity:
 Availability:
  

References:
Resource IdReference
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:35345
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:35345
SCAP Repo OVAL Definitionoval:org.secpod.oval:def:35345


OVAL    1
oval:org.secpod.oval:def:35345

© SecPod Technologies