UCF STIG Viewer Logo

Use of the Tabular Data Control (TDC) ActiveX control must be disabled for the Restricted Sites Zone.


Overview

Finding ID Version Rule ID IA Controls Severity
V-223052 DTBI1120-IE11 SV-223052r863001_rule Medium
Description
This policy setting determines whether users can run the Tabular Data Control (TDC) ActiveX control, based on security zone. By default, the TDC ActiveX Control is disabled in the Internet and Restricted Sites security zones. If you enable this policy setting, users won’t be able to run the TDC ActiveX control from all sites in the specified zone.
STIG Date
Microsoft Internet Explorer 11 Security Technical Implementation Guide 2022-09-12

Details

Check Text ( C-24725r863000_chk )
In the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Internet Explorer >> Internet Control Panel >> Security Page >> Restricted Sites Zone, verify "Allow only approved domains to use the TDC ActiveX control" is “Enabled”.

In the Options window, verify the “Only allow approved domains to use the TDC ActiveX control" drop-down box is set to “Enable”.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4

Criteria:

If the value "120c" is REG_DWORD = “3”, this is not a finding.
Fix Text (F-24713r428707_fix)
In the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Internet Explorer >> Internet Control Panel >> Security Page >> Restricted Sites Zone, set the "Allow only approved domains to use the TDC ActiveX control" to “Enabled”.

In the Options windows, select "Enable" from the “Only allow approved domains to use the TDC ActiveX control" drop-down box.