Registry Tip #101: Everyone security hole |
Hits: Failed to execute CGI : Win32 Error Code = 3
|
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
Because there is a potential for the abuse of this level of rights, you may want to reset these permissions.
A. From the Security menu, click Permissions.
B. Click "Replace Permissions on Existing Subkeys" so that it is selected.
C. Click Everyone, change the Type Of Access to Read, and then click OK.
Several sources recommend modifying the following subkeys so that the Everyone group has only Query Value, Read Control, Enumberate Subkeys, and Notify access.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RPC HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\Current Version HKEY_LOCAL_MACHINE\SOFTWARE\Windows 3.1 Migration Status HKEY_CLASSES_ROOT
Good place to start.