2.006 - ACLs for system files and directories will conform to minimum requirements - 'C:\Program Files'

Information

Failure to properly configure ACL file and directory permissions allows the possibility of unauthorized and anonymous modification to the operating system and installed applications.

Solution

Maintain the default file ACLs and configure the Security Option: 'Network access: Let everyone permissions apply to anonymous users' to 'Disabled' (V-3377).

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2008_R2_DC_V1R34_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-6(7), 800-53|CM-6, CAT|II, CCI|CCI-002165, CSCv6|3.1, Rule-ID|SV-32511r1_rule, STIG-ID|2.006, Vuln-ID|V-1130

Plugin: Windows

Control ID: bfe8317ffc3504a095209430e50f3731688ead0969688a58111adcb76770b833