UCF STIG Viewer Logo

Microsoft Access 2013 STIG


Overview

Date Finding Count (17)
2017-03-17 CAT I (High): 0 CAT II (Med): 15 CAT III (Low): 2
STIG Description
The Microsoft Access 2013 Security Technical Implementation Guide (STIG) is published as a tool to improve the security of Department of Defense (DoD) information systems. Comments or proposed revisions to this document should be sent via e-mail to the following address: disa.stig_spt@mail.mil.

Available Profiles



Findings (MAC III - Administrative Sensitive)

Finding ID Severity Title
V-17187 Medium Trust Bar Notifications for unsigned application add-ins must be blocked.
V-17184 Medium Links that invoke instances of Internet Explorer from within an Office product must be blocked.
V-17183 Medium Navigation to URLs embedded in Office products must be blocked.
V-17173 Medium Disabling of user name and password syntax from being used in URLs must be enforced.
V-17757 Medium Database functionality configurations must be displayed to the user.
V-17545 Medium Trust access for VBA must be disallowed.
V-17174 Medium Enabling IE Bind to Object functionality must be present.
V-17175 Medium Saved from URL mark to assure Internet zone processing must be enforced.
V-17810 Medium The configuration for enabling of hyperlinks must be enforced.
V-26589 Medium Add-ins to Office applications must be signed by a Trusted Publisher.
V-26588 Medium Scripted Window Security must be enforced.
V-26587 Medium File Downloads must be configured for proper restrictions.
V-26586 Medium ActiveX Installs must be configured for proper restriction.
V-26585 Medium Protection from zone elevation must be enforced.
V-26584 Medium Add-on Management functionality must be allowed.
V-17603 Low Prompts to convert older databases must be enforced.
V-17584 Low The Save commands default file format must be configured.