Autorun: behavior must be configured to prevent Autorun commands

746184bf-3f96-4365-8bb4-c7abf8a772ac

Allowing AutoRun commands to execute may introduce malicious code to a system. Configuring this setting prevents AutoRun commands from executing.

Remediation

To fix this configure the policy value for:
Computer Configuration
|_ Administrative Templates
|_ Windows Components
|_ Autoplay Policies
|_ Set the default behavior for AutoRun: Enable - And Select "Do not execute any autorun commands" under "Default Autorun Behavior"

STIG: Server:
2022: https://www.stigviewer.com/stig/microsoft_windows_server_2022/2023-09-11/finding/V-254353
2019: https://www.stigviewer.com/stig/microsoft_windows_server_2019/2023-09-11/finding/V-205805 / https://www.stigviewer.com/stig/windows_server_2019/2020-06-15/finding/V-93375
2016: https://www.stigviewer.com/stig/microsoft_windows_server_2016/2023-08-22/finding/V-224933 / https://www.stigviewer.com/stig/windows_server_2016/2020-06-16/finding/V-73547

Desktop:
W11: https://www.stigviewer.com/stig/microsoft_windows_11/2023-09-29/finding/V-253387
W10: https://www.stigviewer.com/stig/microsoft_windows_10/2023-09-29/finding/V-220828 / https://www.stigviewer.com/stig/windows_10/2021-08-18/finding/V-220828

NIST 800-171: 3.4.6 3.4.7
NIST 800-53 Rev4: CM-7(2)
CSCv7:8.5
CMMC Level 2: CM.2.062
CMMC Level 3: CM.3.068