Regfile associations can be changed by non-administrators

Risk Level: Medium risk vulnerability  Medium

Check or Attack Name: regfile - permissions

Platforms: Windows NT
Description:

Improper permissions were found on the registry key valuename specifying a command association with registry files.

Remedy:

Restrict non-Administrators write access for the command key in the NT registry.

To restrict write access, follow these steps:

  1. Open Registry Editor. From the Windows NT Start menu, select Run, type regedt32, and click OK.
  2. Navigate to HKEY_LOCAL_MACHINE/Software/Classes/regfile/shell/open/command.
  3. From the Security menu, select Permissions to display the Registry Key Permissions dialog box.
  4. Restrict non-Administrators write access.
References:

X-Force Logo
Know Your Risks