800-53|SC-18b.

Title

MOBILE CODE

Description

Establishes usage restrictions and implementation guidance for acceptable mobile code and mobile code technologies; and

Reference Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

Family: SYSTEM AND COMMUNICATIONS PROTECTION

Baseline Impact: MODERATE,HIGH

Audit Items

View all Reference Audit Items

NamePluginAudit Name
4.9 Ensure 'notListedIsapisAllowed' is set to falseWindowsCIS IIS 8.0 v1.5.1 Level 1
4.9 Ensure 'notListedIsapisAllowed' is set to falseWindowsCIS IIS 7 L1 v1.8.0
4.10 Ensure 'notListedCgisAllowed' is set to falseWindowsCIS IIS 8.0 v1.5.1 Level 1
4.10 Ensure 'notListedCgisAllowed' is set to falseWindowsCIS IIS 7 L1 v1.8.0
5.1.1 Configure 'Disable All ActiveX'WindowsCIS MS Office Outlook 2010 v1.0.0
5.1.16 Set 'Load Controls in Forms3:' to 'Disabled'WindowsCIS MS Office Outlook 2010 v1.0.0
7.2 Ensure that the SafeControls list is set to the minimum set of controls needed for your sitesWindowsCIS Microsoft SharePoint 2019 OS v1.0.0
7.2 Ensure that the SafeControls list is set to the minimum set of controls needed for your sitesWindowsCIS Microsoft SharePoint 2016 OS v1.1.0
Always open untrusted database files in Protected ViewWindowsMSCT Office 365 ProPlus 1908 v1.0.0
Always open untrusted database files in Protected ViewWindowsMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0
Always open untrusted database files in Protected ViewWindowsMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0
Always open untrusted database files in Protected ViewWindowsMicrosoft 365 Apps for Enterprise 2306 v1.0.0
Always prevent untrusted Microsoft Query files from openingWindowsMSCT Office 365 ProPlus 1908 v1.0.0
Always prevent untrusted Microsoft Query files from openingWindowsMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0
Always prevent untrusted Microsoft Query files from openingWindowsMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0
Always prevent untrusted Microsoft Query files from openingWindowsMicrosoft 365 Apps for Enterprise 2306 v1.0.0
Load Controls in Forms3WindowsMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0
Load Controls in Forms3WindowsMSCT Office 365 ProPlus 1908 v1.0.0
Load Controls in Forms3WindowsMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0
Load Controls in Forms3WindowsMicrosoft 365 Apps for Enterprise 2306 v1.0.0
WG410 IIS6 - Interactive scripts must have proper access controls. - 'ASP Default Language set to VBScript'WindowsDISA STIG IIS 6.0 Site Checklist v6r16
WG410 IIS6 - Interactive scripts must have proper access controls. - 'Enable Parent Paths set to False'WindowsDISA STIG IIS 6.0 Site Checklist v6r16
WG410 IIS6 - Interactive scripts must have proper access controls. - 'Virtual Directories - ASP Default Language set to VBScript'WindowsDISA STIG IIS 6.0 Site Checklist v6r16
WG410 IIS6 - Interactive scripts must have proper access controls. - 'Virtual Directories - Enable Parent Paths set to False'WindowsDISA STIG IIS 6.0 Site Checklist v6r16