1.55 (L1) Ensure 'Automatically open downloaded MHT or MHTML files from the web in Internet Explorer mode' is set to 'Disabled'

Information

This policy setting controls whether MHT or MHTML files that are downloaded from the web are automatically opened in Internet Explorer mode. MHTML files are archives of HTML code and companion files such as images and audio.

The recommended state for this setting is: Disabled

Internet Explorer is officially retired and unsupported. Opening files in an unsupported browser that does not have modern protections could lead to an attack that exploits a vulnerability in the legacy software.

Solution

To establish the recommended configuration via GP, set the following UI path to Disabled :

Computer Configuration\Policies\Administrative Templates\Microsoft Edge\Automatically open downloaded MHT or MHTML files from the web in Internet Explorer mode

Note: This Group Policy path may not exist by default. It is provided by the Group Policy template MSEdge.admx/adml that can be downloaded from Microsoft from

Download Edge for Business

.

Impact:

MHT or MHTML files will not open in Internet Explorer mode.

See Also

https://workbench.cisecurity.org/benchmarks/18501

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|7.2

Plugin: Windows

Control ID: 52e029aa7c64374d09af90ca131520ee61f0dd2e87beefc40f9a5e72d2eac5de