1.115 WN22-CC-000220

Information

Windows Server 2022 default AutoRun behavior must be configured to prevent AutoRun commands.

GROUP ID: V-254353
RULE ID: SV-254353r958804

Allowing AutoRun commands to execute may introduce malicious code to a system. Configuring this setting prevents AutoRun commands from executing.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> Set the default behavior for AutoRun to 'Enabled' with 'Do not execute any autorun commands' selected

See Also

https://workbench.cisecurity.org/benchmarks/22357