Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-24972 | WIR-WMS-GD-001 | SV-30809r2_rule | ECSC-1 | Medium |
Description |
---|
Earlier versions of the MDM server may have security vulnerabilities or have not implemented required security features. Therefore sensitive DoD data could be exposed if required security features are not implemented on site managed mobile devices. |
STIG | Date |
---|---|
Mobile Device Management (MDM) Server Security Technical Implementation Guide (STIG) | 2012-07-20 |
Check Text ( C-31225r4_chk ) |
---|
On the MDM server, determine the version number of the server. The exact procedure will vary, depending on the MDM product used. -Verify the server version is the latest available version and includes the latest patches available. Talk to the site system administrator and view the vendor's web site to determine the correct version number. -If the server version is not as required, mark as a finding. |
Fix Text (F-27612r2_fix) |
---|
Upgrade to required (or later) MDM server version. |