UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Open/Save actions for Excel 4 macrosheets and add-in files must be blocked.


Overview

Finding ID Version Rule ID IA Controls Severity
V-70957 DTOO105 SV-85581r1_rule Medium
Description
This setting specifies whether users can open, view, edit, or save files saved in the specified format. Enabling block of the specified format mitigates zero-day security attacks (which are attacks that occur between the time that a vulnerability becomes publicly known and a software update or service pack is available) by temporarily preventing users from opening specific types of files and to prevent a user from opening files that have been saved in earlier and pre-release (beta) Microsoft Office formats.
STIG Date
Microsoft Excel 2016 STIG 2016-12-01

Details

Check Text ( None )
None
Fix Text (F-46535r1_fix)
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Excel 2016 -> Excel Options -> Security -> Trust Center -> File Block Settings "Excel 4 macrosheets and add-in files" to "Enabled: Open/Save blocked, use open policy".