Skip to content

Microsoft InfoPath 2013 STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • DTOO168 - Sending templates with email form

    <GroupDescription></GroupDescription>
    Group
  • Disabling sending form templates with the email forms must be configured.

    &lt;VulnDiscussion&gt;InfoPath allows users to attach form templates when sending email forms. If users are able to open form templates included wi...
    Rule Medium Severity
  • DTOO170 - 2003 forms as email

    <GroupDescription></GroupDescription>
    Group
  • InfoPath 2003 forms as email forms in InfoPath 2013 must be disallowed.

    &lt;VulnDiscussion&gt;An attacker might target InfoPath 2003 forms to try and compromise an organization's security. InfoPath 2003 did not write a ...
    Rule Medium Severity
  • DTOO164 - Beaconing UI / forms opening

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules