UCF STIG Viewer Logo

Attachments must be prevented from being downloaded from RSS feeds.


Overview

Finding ID Version Rule ID IA Controls Severity
V-15682 5.231 SV-25183r2_rule Medium
Description
Attachments from RSS feeds may not be secure. This setting will prevent attachments from being downloaded from RSS feeds.
STIG Date
Windows 7 Security Technical Implementation Guide 2018-02-12

Details

Check Text ( C-57993r1_chk )
If the following registry value does not exist or is not configured as specified, this is a finding:

Registry Hive: HKEY_LOCAL_MACHINE
Registry Path: \SOFTWARE\Policies\Microsoft\Internet Explorer\Feeds\

Value Name: DisableEnclosureDownload

Type: REG_DWORD
Value: 1
Fix Text (F-62319r1_fix)
Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> RSS Feeds -> "Prevent downloading of enclosures" to "Enabled".

The policy name will be "Turn off downloading of enclosures" on systems with versions of Internet Explorer prior to IE 10.