The Windows Explorer Preview pane must be disabled for Windows Server 2016.
An XCCDF Rule
Description
A known vulnerability in Windows could allow the execution of malicious code by either opening a compromised document or viewing it in the Windows Preview pane. Organizations must disable the Windows Preview pane and Windows Detail pane.
- ID
- SV-236000r958478_rule
- Version
- WN16-CC-000421
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Ensure the following settings are configured for Windows Server 2016 locally or applied through group policy.
Configure the policy value for User Configuration >> Administrative Templates >> Windows Components >> File Explorer >> Explorer Frame Pane "Turn off Preview Pane" to "Enabled".
Configure the policy value for User Configuration >> Administrative Templates >> Windows Components >> File Explorer >> Explorer Frame Pane "Turn on or off details pane" to "Enabled" and "Configure details pane" to "Always hide".