Skip to content

The Windows Explorer Preview pane must be disabled for Windows Server 2016.

An XCCDF Rule

Description

A known vulnerability in Windows could allow the execution of malicious code by either opening a compromised document or viewing it in the Windows Preview pane. Organizations must disable the Windows Preview pane and Windows Detail pane.

ID
SV-236000r958478_rule
Version
WN16-CC-000421
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Ensure the following settings are configured for Windows Server 2016 locally or applied through group policy. 

Configure the policy value for User Configuration >> Administrative Templates >> Windows Components >> File Explorer >> Explorer Frame Pane "Turn off Preview Pane" to "Enabled".

Configure the policy value for User Configuration >> Administrative Templates >> Windows Components >> File Explorer >> Explorer Frame Pane "Turn on or off details pane" to "Enabled" and "Configure details pane" to "Always hide".