Check: DTBI140
Microsoft IE Version 6:
DTBI140
(in version v4 r11)
Title
The Error Reporting tool for IE is installed or enabled. (Cat II impact)
Discussion
An error reporting tool may send sensitive data to a vendor.
Check Content
Procedure: Use the Windows Registry Editor to navigate to the following key: HKLM\ Software\Microsoft\Internet Explorer\Main and determine the value data for the IEWatsonEnabled value. Criteria: If the system being reviewed is running Windows XP or 2003, this is not a Finding. [This potential vulnerability is covered in the Windows Checklist.] If the value data for the IEWatsonEnabled value is not 0 (the number zero) or the key is not found, then this is a Finding.
Fix Text
Navigate to the registry key HKLM\Software\Microsoft\Internet Explorer\Main. Make sure that the key exists and the value data for the IEWatsonEnabled value is 0 (the number zero).
Additional Identifiers
Rule ID: SV-6389r1_rule
Vulnerability ID: V-6319
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |