Skip to content

The ability to run unsecure Office apps must be disabled.

An XCCDF Rule

Description

Unsecure apps for Office, which are apps that have web page or catalog locations that are not SSL-secured (https://), and/or are not in users' Internet zones may allow data to be transmitted/accessed via clear text to outside sources. By configuring this policy to be disabled, users will be prevented from transmitting/accessing data in a nonsecure manner.

ID
SV-228526r508020_rule
Version
DTOO412
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Set the policy value for User Configuration >> Administrative Templates >> Microsoft Office 2013 >> Security Settings >> Trust Center >> Trusted Catalogs "Allow Unsecure Apps and Catalogs" to "Disabled".