Check: DTOO238 - Outlook
Microsoft Outlook 2007:
DTOO238 - Outlook
(in versions v4 r16 through v4 r15)
Title
Prevent users from customizing attachment security settings - Outlook (Cat II impact)
Discussion
All installed trusted COM addins can be trusted. Exchange Settings for the addins still override if present and this option is selected.
Check Content
The policy value for User Configuration -> Administrative Templates -> Microsoft Office Outlook 2007 -> Security “Prevent users from customizing attachment security” will be set to “Enabled”. Procedure: Use the Windows Registry Editor to navigate to the following key: HKCU\Software\Policies\Microsoft\Office\12.0\Outlook Criteria: If the value DisallowAttachmentCustomization is REG_DWORD = 1, this is not a finding.
Fix Text
The policy value for User Configuration -> Administrative Templates -> Microsoft Office Outlook 2007 -> Security “Prevent users from customizing attachment security” will be set to “Enabled”.
Additional Identifiers
Rule ID: SV-18970r1_rule
Vulnerability ID: V-17766
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |