Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-206803 | SRG-NET-000512-VVEP-00057 | SV-206803r604140_rule | Medium |
Description |
---|
Unauthorized third-party software is challenging the security posture of DoD. Most established vendors have developed patch management process that prevents risk, resulting in an estimated 80 percent of threats arise from third-party software. Preventing users from installing third-party software limits organizational exposure. Additionally, preventing installation of untrusted software further reduces risk to the network. |
STIG | Date |
---|---|
Voice Video Endpoint Security Requirements Guide | 2020-12-04 |
Check Text ( C-7059r363932_chk ) |
---|
Verify the Voice Video Endpoint prevents the user from installing third-party software. If the Voice Video Endpoint does not prevent the user from installing third-party software, this is a finding. |
Fix Text (F-7059r363933_fix) |
---|
Configure the Voice Video Endpoint to prevent the user from installing third-party software. |