1.7.8 User Account Control: Virtualize file and registry write failures to per-user locations

Information

This control defines whether Windows will virtualize file and registry writes to user locations when a non-UAC compliant application attempts to write to protected areas, such as the %SYSTEMROOT%.

Solution

Make sure 'User Account Control: Virtualize file and registry write failures to per-user locations' is Enabled.

See Also

https://workbench.cisecurity.org/files/10

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-29(1), CCE|CCE-2266-5

Plugin: Windows

Control ID: fa7c411904a2bcde5538581160daaea0793d08e5c1d83749e6bd76ae21d5a815