800-53|SC-18

Title

MOBILE CODE

Description

The organization:

Supplemental

Decisions regarding the employment of mobile code within organizational information systems are based on the potential for the code to cause damage to the systems if used maliciously. Mobile code technologies include, for example, Java, JavaScript, ActiveX, Postscript, PDF, Shockwave movies, Flash animations, and VBScript. Usage restrictions and implementation guidance apply to both the selection and use of mobile code installed on servers and mobile code downloaded and executed on individual workstations and devices (e.g., smart phones). Mobile code policy and procedures address preventing the development, acquisition, or introduction of unacceptable mobile code within organizational information systems.

Reference Item Details

Related: AU-12,AU-2,CM-2,CM-6,SI-3

Category: SYSTEM AND COMMUNICATIONS PROTECTION

Family: SYSTEM AND COMMUNICATIONS PROTECTION

Priority: P2

Baseline Impact: MODERATE,HIGH

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1 (L1) Ensure 'Open 'safe' files after downloading' is 'Disabled'UnixCIS MacOS Safari v2.0.0 L1
1.1 Set 'Allow software to run or install even if the signature is invalid' to 'Disabled'WindowsCIS IE 9 v1.0.0
1.1.3.2.3 Ensure 'VBA Macro Notification Settings' is set to Enabled (Disable all Except Digitally Signed Macros)WindowsCIS Microsoft Office Access 2016 v1.0.1
1.1.3.2.3 Ensure 'VBA Macro Notification Settings' is set to Enabled (Disable all Except Digitally Signed Macros)WindowsCIS Microsoft Office Access 2013 v1.0.1
1.1.3.2.4 Ensure Set 'Disable Trust Bar Notification for unsigned application add-ins ' is set to EnabledWindowsCIS Microsoft Office Access 2016 v1.0.1
1.1.3.2.4 Ensure Set 'Disable Trust Bar Notification for unsigned application add-ins' is set to EnabledWindowsCIS Microsoft Office Access 2013 v1.0.1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - excel.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - exprwd.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - groove.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - msaccess.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - mse7.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - mspub.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - onenote.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - outlook.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - powerpnt.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - pptview.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - spdesign.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - visio.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - winproj.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.1 Ensure 'Add-on Management' is set to 'Enabled' - winword.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.2 Ensure 'Bind to object' is set to 'Enabled' - excel.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.2 Ensure 'Bind to object' is set to 'Enabled' - exprwd.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - excel.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - exprwd.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - groove.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - msaccess.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - mse7.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - mspub.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - onenote.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - outlook.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - powerpnt.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - pptview.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - spdesign.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - visio.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - winproj.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.11 Ensure 'Restrict ActiveX Install' is set to 'Enabled' - winword.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - excel.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - exprwd.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - groove.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - msaccess.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - mse7.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - mspub.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - onenote.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - outlook.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - powerpnt.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - pptview.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - spdesign.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - visio.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - winproj.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1
1.1.4.1.14 Ensure 'Scripted Window Security Restrictions' is set to 'Enabled' - winword.exeWindowsCIS Microsoft Office Enterprise v1.0.0 L1