Details
By default, the Everyone group is given full control to new file shares. When a share is created, permissions should be reconfigured to give the minimum access to those accounts that require it.
Solution
Remove permissions from the Everyone group from locally-created file shares and assign them to authorized groups.
Supportive Information
The following resource is also helpful.
This security hardening control applies to the following category of controls within NIST 800-53: System and Communications Protection.This control applies to the following type of system Windows.
References
- 800-53|SC-4
- CAT|II
- CCI|CCI-001090
- CSCv6|3.1
- Rule-ID|SV-29212r1_rule
- STIG-ID|2.015
- Vuln-ID|V-3245