UCF STIG Viewer Logo

The Download signed ActiveX controls property is not set properly for the Trusted Sites Zone.


Overview

Finding ID Version Rule ID IA Controls Severity
V-6277 DTBI082 SV-6339r1_rule DCMC-1 Medium
Description
ActiveX controls can contain potentially malicious code and must only be allowed to be downloaded from trusted sites and they must be digitally signed.
STIG Date
Microsoft IE Version 6 2014-12-17

Details

Check Text ( C-388r1_chk )
Procedure: Use the Windows Registry Editor to navigate to the following key: HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2

Criteria: If the value 1001 is REG_DWORD 1 (Prompt) or 3 (Disabled), this is not a finding.
Fix Text (F-5753r1_fix)
Change the registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2

Criteria: If the value 1001 is REG_DWORD 1 (Prompt) or 3 (Disabled).