1.136 WN10-CC-000185

Information

The default autorun behavior must be configured to prevent autorun commands.

GROUP ID: V-220828RULE ID: SV-220828r958804

Allowing autorun commands to execute may introduce malicious code to a system. Configuring this setting prevents autorun commands from executing.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> 'Set the default behavior for AutoRun'

to 'Enabled:Do not execute any autorun commands'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(2), CCI|CCI-001764, Rule-ID|SV-220828r958804_rule, STIG-ID|WN10-CC-000185, Vuln-ID|V-220828

Plugin: Windows

Control ID: 9b673e00b0aaa9b8995e13fe76ff5dd3848257993116bb7b597396dc4b73b4a6