Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-6319 | DTBI140 | SV-6389r1_rule | ECSC-1 | Medium |
Description |
---|
An error reporting tool may send sensitive data to a vendor. |
STIG | Date |
---|---|
Microsoft IE Version 6 | 2014-12-17 |
Check Text ( C-595r1_chk ) |
---|
Procedure: Use the Windows Registry Editor to navigate to the following key: HKLM\ Software\Microsoft\Internet Explorer\Main and determine the value data for the IEWatsonEnabled value. Criteria: If the system being reviewed is running Windows XP or 2003, this is not a Finding. [This potential vulnerability is covered in the Windows Checklist.] If the value data for the IEWatsonEnabled value is not 0 (the number zero) or the key is not found, then this is a Finding. |
Fix Text (F-5842r1_fix) |
---|
Navigate to the registry key HKLM\Software\Microsoft\Internet Explorer\Main. Make sure that the key exists and the value data for the IEWatsonEnabled value is 0 (the number zero). |