Repair directory readable |
---|
Risk Level: | Medium | Check or Attack Name: repair insecure |
---|---|---|
Platforms: | Windows NT | |
Description: | By default, the %systemroot%\repair directory is readable by everyone. It is possible to extract usernames and potentially the hashes of the passwords from the sam._ file. Set the permissions on this directory to full control for administrators and system and remove permissions for everyone. |
|
Remedy: | Restrict access to the %systemroot\repair directory to administrators only. To restrict access from the Windows NT desktop, follow these steps:
Open the command line and restrict access:
|
|
References: |
Know Your Risks |