UCF STIG Viewer Logo

Microsoft IE Version 7



Findings (MAC III - Administrative Sensitive)

Finding ID Severity Title
V-15500 Medium Allow third-party browser extensions are not disabled.
V-15503 Medium Check for signatures on downloaded programs is not enabled.
V-15502 Medium Check for server certificate revocation is not enabled.
V-15504 Medium Intranet Sites: Include all network paths (UNCs) are disabled.
V-15507 Medium Allow script-initiated windows without size or position constraints for internet zone is not disabled.
V-15509 Medium Allow Scriptlets are not disabled.
V-6262 Medium Logon options for internet zone are not enabled.
V-6260 Medium Allow cut, copy or paste operations from the clipboard via script are not disabled for internet zone.
V-6267 Medium Java permissions for local intranet zone are not disabled.
V-22171 Medium Internet Explorer Processes Restrict ActiveX Install (Reserved) property is properly set.
V-15508 Medium Allow script-initiated windows without size or position constraints for restricted sites zone are not disabled.
V-15518 Medium Java permissions for group policy for trusted sites zone are not disabled.
V-15519 Medium Java permissions for group policy for internet zone are not disabled.
V-15516 Medium Java permissions for my computer group policy are not disabled.
V-15517 Medium Java permissions for group policy for local intranet zone are not disabled.
V-15515 Medium Java permissions for my computer are not disabled.
V-15513 Medium Automatic prompting for file downloads dialog box is not disabled.
V-6297 Medium Access data sources across domains restricted sites zones are not disabled.
V-6294 Medium Allow file downloads are not disabled.
V-6295 Medium Allow font downloads for restricted sites zone is not disabled.
V-6292 Medium Run ActiveX controls and plugins are not disabled..
V-6293 Medium Script ActiveX controls marked safe for scripting is not disabled.
V-6290 Medium Download unsigned ActiveX controls for restricted sites zone is not disabled.
V-6291 Medium Initialize and script ActiveX controls not marked as safe for restricted sites zone is not disabled.
V-6298 Medium Allow META REFRESH is not disabled.
V-15581 Medium Turn on the auto-complete feature for user names and passwords on forms are not disabled.
V-15582 Medium Turn on the Internet Connection Wizard Auto Detect is not disabled.
V-6301 Medium Allow drag and drop or copy and paste files for restricted sites zone are not disabled.
V-15569 Medium Internet Explorer Processes for Zone Elevation is not enabled. Explorer
V-15568 Medium Internet Explorer Processes for MK protocol is not enabled. (Reserved)
V-6302 Medium Allow installation of desktop items for restricted sites zone is not disabled.
V-15563 Medium Turn off changing the URL to be displayed for checking updates to Internet Explorer and Internet Tools is not disabled.
V-15562 Medium Scripting of Java applets is not disabled.
V-15561 Medium Run .NET Framework-reliant components signed with Authenticode are not disabled.
V-22636 Medium Run .NET Framework-reliant components signed with Authenticode (Internet Zone) property is properly set.
V-15566 Medium Internet Explorer Processes for MIME handling is not enabled. IExplore
V-15565 Medium Internet Explorer Processes for MIME handling is not enabled. Explorer
V-15564 Medium Turn off configuring the update check interval is not disabled.
V-16879 Medium The Download signed ActiveX controls property is not set properly for the Lockdown Zone.
V-6281 Medium Java permissions for trusted sites zone are not disabled.
V-6289 Medium Download signed ActiveX controls for restricted sites zone is not disabled.
V-15579 Medium Turn off Crash Detection is not enabled.
V-22688 Medium Internet Explorer Processes Restrict ActiveX Install (IExplorer) property is properly set.
V-15570 Medium Internet Explorer Processes for Zone Elevation is not enabled. IExplore
V-15571 Medium Internet Explorer Processes for restricting pop-up windows is not enabled. Explorer
V-15572 Medium Internet Explorer Processes for restricting pop-up windows is not enabled. IExplore
V-22687 Medium Internet Explorer Processes Restrict ActiveX Install (Explorer) property is properly set.
V-15574 Medium Disable AutoComplete for forms is not enabled.
V-15575 Medium Disable external branding of Internet Explorer is not enabled.
V-6238 Medium The IE SSL/TLS parameter must be set correctly.
V-6239 Medium The IE warning about certificate address mismatch must be enforced.
V-15580 Medium Turn off page transitions is not enabled.
V-15548 Medium Internet Explorer Processes for MIME handling is not enabled. (Reserved)
V-6243 Medium Download signed ActiveX controls for internet zone is not disabled.
V-6228 Medium The IE home page is not set to blank or a trusted site.
V-6304 Medium Navigate sub-frames across different domains for restricted sites zone are not disabled.
V-6305 Medium Software channel permissions for restricted sites zone are not disabled.
V-6307 Medium Userdata persistence for restricted sites zone is not disabled.
V-22635 Medium Run .NET Framework-reliant components not signed with Authenticode (Internet Zone) property is properly set.
V-22634 Medium Allow status bar updates via script (Internet Zone) property is properly set.
V-22637 Medium Allow Scriptlets (Restricted Sites Zone) property is properly set.
V-6303 Medium Launching applications and files in an IFRAME is not disabled.
V-22638 Medium Allow status bar updates via script (Restricted Sites Zone) property is properly set.
V-6308 Medium Allow active scripting is not disabled.
V-6309 Medium Allow cut, copy or paste operations from the clipboard via script are not disabled for restricted sites zone.
V-6244 Medium Download unsigned ActiveX controls for internet zone is not disabled.
V-3428 Medium Internet Explorer is configured to Allow Users to Change Policies.
V-3429 Medium Internet Explorer is configured to Allow Users to Add/Delete Sites.
V-3427 Medium Internet Explorer is not configured to require consistent security zone settings to all users.
V-15604 Medium Internet Explorer Processes for MIME sniffing is not enabled. IExplore
V-6253 Medium The Allow drag and drop or copy and paste files for internet zone are not disabled.
V-6250 Medium Access data sources across domains are not disabled.
V-15560 Medium Run .NET Framework-reliant components not signed with Authenticode are not disabled.
V-6256 Medium Navigate sub-frames across different domains for internet zone are not disabled.
V-6257 Medium Software channel permissions for internet zone are not disabled.
V-6254 Medium Allow installation of desktop items for internet zone is not disabled.
V-6255 Medium Launching applications and files in an IFRAME for internet zone is not disabled.
V-6259 Medium Userdata persistence for internet zone is not disabled.
V-7007 Medium Java permissions for restricted sites zone are not disabled.
V-6311 Medium Logon options for restricted sites zones are not enabled.
V-15603 Medium Internet Explorer Processes for MIME sniffing is not enabled. Explorer
V-15528 Medium Turn on Protected Mode for restricted sites zone is not enabled.
V-15545 Medium Allow binary and script behaviors are not disabled.
V-15546 Medium Automatic prompting for file downloads is not disabled.
V-6245 Medium Initialize and script ActiveX controls not marked as safe for internet zone is not disabled.
V-15549 Medium Internet Explorer Processes for MIME sniffing is not enabled. (Reserved)
V-15527 Medium Turn on Protected Mode internet zone is not enabled.
V-15526 Medium Turn Off First-Run Opt-In for restricted sites zone are not disabled.
V-15525 Medium Turn Off First-Run Opt-In for internet zone is not disabled.
V-15524 Medium Open files based on content, not file extension for restricted sites zone are not disabled.
V-15523 Medium Open files based on content, not file extension for internet zone are not disabled.
V-15522 Medium Loose or un-compiled XAML files for restricted sites zone are not disabled.
V-15521 Medium Loose or un-compiled XAML files for internet zone are not disabled.
V-15520 Medium Java permissions for group policy for restricted sites zone are not disabled.
V-6249 Medium Java permissions for internet zone are not disabled.
V-6248 Medium Allow font downloads for internet zone is not disabled.
V-15529 Medium Use Pop-up Blocker for internet zone is not enabled.
V-32808 Medium Check for publishers certificate revocation must be enforced.
V-15492 Medium Prevent participation in the Customer Experience Improvement Program is not disabled.
V-15490 Medium Automatic configuration of Internet Explorer is not disabled.
V-15497 Medium Allow active content from CDs to run on user machines is not disabled.
V-15495 Medium Turn off Managing Phishing filter is not disabled.
V-15494 Medium Turn off the Security Settings Check feature is not disabled.
V-15499 Medium Allow software to run or install even if the signature is invalid is not disabled.
V-15552 Medium Internet Explorer Processes for Zone Elevation is not enabled. (Reserved)
V-15550 Medium Internet Explorer Processes for MK protocol is not enabled. (Explorer)
V-15551 Medium Internet Explorer Processes for MK protocol is not enabled. (IExplore)
V-15556 Medium Internet Explorer Processes for Download prompt is not enabled. (Reserved)
V-15557 Medium Internet Explorer Processes for Download prompt is not enabled. Explorer
V-15558 Medium Internet Explorer Processes for Download prompt is not enabled. IExplore
V-15559 Medium Internet Explorer Processes for restricting pop-up windows is not enabled. (Reserved)
V-30780 Medium Internet Explorer Processes for Information bars is not enforced (Explorer).
V-30781 Medium Internet Explorer Processes for Information bars is not enforced (IExplore).
V-15534 Medium Web sites in less privileged Web content zones can navigate into restricted sites zone is not disabled.
V-15530 Medium Use Pop-up Blocker for restricted sites zone is not enabled.
V-15533 Medium Web sites in less privileged Web content zones can navigate into internet zone is not disabled.
V-30777 Medium Automatic checking for Internet Explorer updates is not disabled.
V-30779 Medium Internet Explorer Processes for Information bars are enforced (Reserved).
V-17296 Medium Prevent performance of First Run Customize settings is not enabled.
V-21887 Medium Disable Configuring History - Histroy setting is not set to 40 days.
V-14245 Low Internet Explorer - Do not allow users to enable or disable add-ons.
V-3430 Low Internet Explorer is not configured to disable making Proxy Settings Per Machine.