UCF STIG Viewer Logo

Hyperlink warnings for Office must be configured for use.


Overview

Finding ID Version Rule ID IA Controls Severity
V-17659 DTOO194 - Office System SV-33469r1_rule Medium
Description
Unsafe hyperlinks are links that might pose a security risk if users click them. Clicking an unsafe link could compromise the security of sensitive information or harm the computer. Links that Office considers unsafe include links to executable files, TIFF files, and Microsoft Document Imaging (MDI) files. Other unsafe links are those using protocols considered to be unsafe, including msn, nntp, mms, outlook, and stssync.
STIG Date
Microsoft Office System 2010 STIG 2018-04-04

Details

Check Text ( C-33952r1_chk )
The policy value for User Configuration -> Administrative Templates -> Microsoft Office 2010 -> Security Settings “Suppress hyperlink warnings” must be set to “Disabled”.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKCU\Software\Policies\Microsoft\Office\14.0\common\security

Criteria: If the value DisableHyperLinkWarning is REG_DWORD = 0, this is not a finding.
Fix Text (F-29641r1_fix)
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Office 2010 -> Security Settings “Suppress hyperlink warnings” to “Disabled”.