UCF STIG Viewer Logo

JBoss QuickStarts must be removed.


Overview

Finding ID Version Rule ID IA Controls Severity
V-62267 JBOS-AS-000235 SV-76757r1_rule Medium
Description
JBoss QuickStarts are demo applications that can be deployed quickly. Demo applications are not written with security in mind and often open new attack vectors. QuickStarts must be removed.
STIG Date
JBoss EAP 6.3 Security Technical Implementation Guide 2020-06-12

Details

Check Text ( C-63071r1_chk )
Examine the folder. If a jboss-eap-6.3.0-GA-quickstarts folder exits, this is a finding.
Fix Text (F-68187r1_fix)
Delete the QuickStarts folder.