Registry access unrestricted from network |
---|
Risk Level: | High | Check or Attack Name: winreg |
---|---|---|
Platforms: | Windows NT | |
Description: | The SYSTEM\CurrentControlSet\Control\SecurePipeServers\Winreg key is not present. This key controls remote access to the registry. If the 'everyone' group is not allowed access, null session access to the registry can be prevented. This vulnerability can allow non-authenticated users to write registry keys, if this key is not present, remote access to the registry is not controlled, and Service Pack 3 is not applied. |
|
Remedy: | Apply the latest Windows NT 4.0 Service Pack and modify the registry for RestrictAnonymous. To apply the latest Windows NT 4.0 Service Pack, follow these steps:
—AND— To set permission to the winreg key in the NT registry, follow these steps:
|
|
References: |
Know Your Risks |