UCF STIG Viewer Logo

Prevent RSS attachment downloads.


Overview

Finding ID Version Rule ID IA Controls Severity
V-15682 5.231 SV-25183r1_rule ECSC-1 Medium
Description
This check verifies that attachments are prevented from being downloaded from RSS feeds.
STIG Date
Windows 7 Security Technical Implementation Guide 2014-04-02

Details

Check Text ( C-26812r1_chk )
If the following registry value doesn’t exist or is not configured as specified, this is a finding:

Registry Hive: HKEY_LOCAL_MACHINE
Subkey: \Software\Policies\Microsoft\Internet Explorer\Feeds\

Value Name: DisableEnclosureDownload

Type: REG_DWORD
Value: 1
Fix Text (F-22913r1_fix)
Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> RSS Feeds “Turn off downloading of enclosures” to “Enabled”.