I have the same question. I raised a case with Qualys and they provided me the list of paths. But if I have like 100 servers do I have to raise 100 cases to know the executables affected.
372294-Windows Service Weak Permissions detected does not list the services
Hi,
I have deployed Qualys built in vulnerability assessment solution on Azure VMs, one of the vulnerability findings named "372294-Windows Service Weak Permissions detected" mentions that there are some weak permissions in the services.
It mentions "The below list running services on Windows have weak permissions and are susceptible to privilege escalation..." under the Threat section but there is no list provided of services that have this issue. Even I opened the affected machines individually to check if the list is present there but no.
Can you help me to find out this list? Where does Qualys list the services of this issue?