1.1.5.1 Ensure 'Enable Automatic Updates' is set to 'Enabled' | CIS Microsoft Office Enterprise v1.2.0 L1 | Windows | RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY |
1.8.1.3 Ensure 'Update Automatic Links at Open' is set to Disabled | CIS Microsoft Office Word 2016 v1.1.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
1.8.7.2.1.2 Ensure 'Word 2 and Earlier Binary Documents and Templates' is set to Enabled (Open/Save blocked, use open policy) | CIS Microsoft Office Word 2016 v1.1.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
1.8.7.2.1.4 Ensure 'Word 95 Binary Documents and Templates' is set to Enabled (Open/Save Blocked, Use Open Policy) | CIS Microsoft Office Word 2016 v1.1.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
1.8.7.2.1.5 Ensure 'Word 97 Binary Documents and Templates' is set to Enabled (Open/Save Blocked, Use Open Policy) | CIS Microsoft Office Word 2016 v1.1.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
1.8.7.2.2.4 Ensure 'Document Behavior if File Validation Fails' is set to Enabled (Open in Protected View) Unchecked for 'Do not allow edit' | CIS Microsoft Office Word 2016 v1.1.0 | Windows | CONFIGURATION MANAGEMENT |
1.8.7.2.5 Ensure 'Disable Trust Bar Notification for Unsigned Application Add-ins and Block Them' to Enable | CIS Microsoft Office Word 2016 v1.1.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
1.8.7.5 Ensure 'Warn Before Printing, Saving or Sending a File That Contains Tracked Changes or Comments' is set to Enabled | CIS Microsoft Office Word 2016 v1.1.0 | Windows | CONFIGURATION MANAGEMENT |
2.3.27.13 (L1) Ensure 'Encryption type for password protected Office 97-2003 files' is set to 'Enabled' | CIS Microsoft Intune for Office v1.1.0 L1 | Windows | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION |
2.6.6.6.2.8 Ensure 'VBA Macro Notification Settings' is set to 'Enabled: Disable all except digitally signed macros' | CIS Microsoft Office Enterprise v1.2.0 L1 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
CIS_Microsoft_Exchange_Server_2019_v1.0.0_Level_1_Edge.audit from CIS Microsoft Exchange Server 2019 Benchmark v1.0.0 | CIS Microsoft Exchange Server 2019 L1 Edge v1.0.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
CIS_Microsoft_SQL_Server_2008_R2_v1.7.0_Level_1_OS.audit from CIS Microsoft SQL Server 2008 R2 Database | CIS SQL Server 2008 R2 DB OS L1 v1.7.0 | Windows | |
CIS_Microsoft_Windows_10_Enterprise_v4.0.0_NG.audit from CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 | CIS Microsoft Windows 10 Enterprise v4.0.0 NG | Windows | |
CIS_Microsoft_Windows_Server_2016_v3.0.0_L1_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0 | CIS Microsoft Windows Server 2016 v3.0.0 L1 MS | Windows | |
CIS_Microsoft_Windows_Server_2016_v3.0.0_L2_DC.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0 | CIS Microsoft Windows Server 2016 v3.0.0 L2 DC | Windows | |
CIS_Microsoft_Windows_Server_2016_v3.0.0_L2_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0 | CIS Microsoft Windows Server 2016 v3.0.0 L2 MS | Windows | |
CIS_Microsoft_Windows_Server_2016_v3.0.0_NG_DC.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0 | CIS Microsoft Windows Server 2016 v3.0.0 NG DC | Windows | |
CIS_Microsoft_Windows_Server_2016_v3.0.0_NG_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0 | CIS Microsoft Windows Server 2016 v3.0.0 NG MS | Windows | |
CIS_Microsoft_Windows_Server_2019_v3.0.1_NG_DC.audit from CIS Microsoft Windows Server 2019 Benchmark v3.0.1 | CIS Microsoft Windows Server 2019 v3.0.1 NG DC | Windows | |
CIS_Microsoft_Windows_Server_2022_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0 | CIS Microsoft Windows Server 2022 v4.0.0 L2 MS | Windows | |
CIS_Microsoft_Windows_Server_2022_v4.0.0_NG_DC.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0 | CIS Microsoft Windows Server 2022 v4.0.0 NG DC | Windows | |
CIS_Microsoft_Windows_Server_2025_v1.0.0_L1_MS.audit from CIS Microsoft Windows Server 2025 Benchmark v1.0.0 | CIS Microsoft Windows Server 2025 v1.0.0 L1 MS | Windows | |
CIS_Microsoft_Windows_Server_2025_v1.0.0_L2_DC.audit from CIS Microsoft Windows Server 2025 Benchmark v1.0.0 | CIS Microsoft Windows Server 2025 v1.0.0 L2 DC | Windows | |
CIS_Microsoft_Windows_Server_2025_v1.0.0_L2_MS.audit from CIS Microsoft Windows Server 2025 Benchmark v1.0.0 | CIS Microsoft Windows Server 2025 v1.0.0 L2 MS | Windows | |
CIS_Microsoft_Windows_Server_2025_v1.0.0_NG_DC.audit from CIS Microsoft Windows Server 2025 Benchmark v1.0.0 | CIS Microsoft Windows Server 2025 v1.0.0 NG DC | Windows | |
CIS_MS_IIS_10_v1.2.1_Level_2.audit from CIS Microsoft IIS 10 Benchmark v1.2.1 | CIS IIS 10 v1.2.1 Level 2 | Windows | |
CIS_MS_Windows_7_v3.2.0_Level_2_Bitlocker.audit from CIS Microsoft Windows 7 Workstation Benchmark v3.2.0 | CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0 | Windows | |
CIS_MS_Windows_8.1_v2.4.1_Level_1_Bitlocker.audit from CIS Microsoft Windows 8.1 Workstation Benchmark v2.4.1 | CIS Microsoft Windows 8.1 v2.4.1 L1 Bitlocker | Windows | |
Default Protections for Recommended Software - AcrobatReader | MSCT Windows Server 2012 R2 DC v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - Excel | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - jre6_javaw | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - jre7_javaw | MSCT Windows Server 2012 R2 DC v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - jre7_javaw | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - jre7_javaws | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - Picture Manager | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - VisioViewer | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - Word | MSCT Windows Server 2012 R2 MS v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
Default Protections for Recommended Software - Wordpad | MSCT Windows Server 2012 R2 DC v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
DTOO133 - All automatic loading from trusted locations must be disabled. | DISA STIG Microsoft Excel 2013 v1r8 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO136 - The Save commands default file format must be configured. | DISA STIG Microsoft Access 2013 v1r7 | Windows | CONFIGURATION MANAGEMENT |
DTOO146 - Trust access for VBA must be disallowed. | DISA STIG Microsoft PowerPoint 2013 v1r7 | Windows | CONFIGURATION MANAGEMENT |
DTOO146 - Trust access for VBA must be disallowed. | DISA STIG Microsoft Excel 2013 v1r8 | Windows | CONFIGURATION MANAGEMENT |
DTOO150 - The Update of automatic links setting must be configured to prompt user before allowing links to be updated. | DISA STIG Microsoft Excel 2013 v1r8 | Windows | SYSTEM AND INFORMATION INTEGRITY |
DTOO277 - Hyperlinks in suspected phishing email messages must be disallowed. | DISA STIG Microsoft Outlook 2013 v1r14 | Windows | CONFIGURATION MANAGEMENT |
DTOO279 - RPC encryption between Outlook and Exchange server must be enforced. | DISA STIG Microsoft Outlook 2013 v1r14 | Windows | IDENTIFICATION AND AUTHENTICATION |
DTOO309 - The InfoPath APTCA Assembly Allowable List must be enforced. | DISA STIG Microsoft InfoPath 2013 v1r6 | Windows | CONFIGURATION MANAGEMENT |
DTOO426 - Word must be configured to warn when opening a document with custom XML markup. | DISA STIG Microsoft Word 2013 v1r7 | Windows | CONFIGURATION MANAGEMENT |
Encryption type for password protected Office 97-2003 files | MSCT Office 365 ProPlus 1908 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
Encryption type for password protected Office 97-2003 files | MSCT M365 Apps for enterprise 2412 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
EX13-MB-000255 - Exchange must have antispam filtering configured. | DISA Microsoft Exchange 2013 Mailbox Server STIG v2r3 | Windows | SYSTEM AND INFORMATION INTEGRITY |