Check: 5.260
Windows 7 STIG:
5.260
(in versions v1 r32 through v1 r25)
Title
The system must not have unnecessary features installed. (Cat II impact)
Discussion
Windows includes additional features available for installation. The majority of these are unnecessary and may also increase the attack surface of the system.
Check Content
Perform the following to verify installed Features: Open Control Panel. Select "Programs and Features". Select "Turn Windows features on or off". Features currently prohibited: Games Windows Media Center (under Media Features) SimpleTCP Services Telnet (Client or Server) TFTP Client If any of the listed features is selected, this is a finding.
Fix Text
Uninstall any prohibited features listed in the manual check. Open Control Panel. Select “Programs and Features”. Select “Turn Windows features on or off”. Features currently prohibited: Games Windows Media Center (under Media Features) SimpleTCP Services Telnet (Client or Server) TFTP Client
Additional Identifiers
Rule ID: SV-25252r2_rule
Vulnerability ID: V-16006
Group Title: Unnecessary Features Installed
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |