Exchange must have the most current, approved service pack installed.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-228411EX16-MB-000680SV-228411r879827_ruleCCI-002605medium
Description
Failure to install the most current Exchange service pack leaves a system vulnerable to exploitation. Current service packs correct known security and system vulnerabilities.
STIGDate
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide2023-12-18

Related Frameworks

5 paths across 3 frameworks
NIST 800-531 mapping
SI-2
1.00
  • DISA · V2R6 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1713 mappings
3.14.1
1.00
  • DISA · V2R6 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.14.2
1.00
  • DISA · V2R6 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.14.3
1.00
  • DISA · V2R6 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-002605
1.00
  • DISA · V2R6 · disa_xccdf · related

Details

Check Text (C-228411r879827_chk)

Determine the most current, approved service pack. Open the Exchange Management Shell and enter the following command: Get-ExchangeServer | fl Name, AdminDisplayVersion If the value of "AdminDisplayVersion" does not return the most current, approved service pack, this is a finding.

Fix Text (F-30629r497030_fix)

Install the most current, approved service pack.