Skip to content

Microsoft Outlook 2013 STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Object Model Prompt behavior for programmatic address books must be configured.

    If an untrusted application accesses the address book, the application could gain access to sensitive data and potentially change that data. By default, when an untrusted application attempts to ac...
    Rule Medium Severity
  • DTOO241 - Demote Attachments to Level 2

    Group
  • Action to demote an EMail Level 1 attachment to Level 2 must be configured.

    Outlook uses two levels of security to restrict access to files attached to email messages or other items. Files with specific extensions can be categorized as Level 1 (users cannot view the file) ...
    Rule Medium Severity
  • DTOO254 - Object Model Prompt for Formula Property

    Group
  • Object Model Prompt behavior for accessing User Property Formula must be configured.

    A custom form in Outlook could be used to gain access to sensitive address book data and potentially to change that data. By default, when a user tries to bind an address information field to a com...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules