CD-ROM available to all users

Risk Level: Low risk vulnerability  Low

Check or Attack Name: Allocate CDRoms

Platforms: Windows NT
Description:

The CD-ROM is available to all users on the system. For best security practice, the CD-ROM should only be available to the user who is logged on at the console.

Remedy:

Edit the registry so that the CD-ROM is available only to the currently logged on user:

  1. Open the Registry Editor. From the Windows NT Start menu, select Run. Type regedt32 and click OK.
  2. Go to the HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon registry key.
  3. From the Edit menu, select Add Value to display the Add Value dialog box.
  4. Create a value named AllocateCDRoms with type REG_SZ.
  5. Click OK to display the String Editor.
  6. In the String field, type a value of 1 and click OK.
  7. Reboot your computer for this setting to take effect.
References:

X-Force Logo
Know Your Risks