1.1.12.1 (L1) Ensure 'Activate Flash on websites' is set to 'Disabled'

Information

This policy setting configures the use of Flash on websites.

The recommended state for this setting is: Disabled

Firefox ended support for Adobe Flash at the end of 2020. Unsupported software could lead to an attacker exploiting vulnerabilities that are not patched with updates.

Solution

To establish the recommended configuration via GP, set the following UI path to Disabled :

Computer Configuration\Policies\Administrative Templates\Mozilla\Firefox\Flash\Activate Flash on websites

Note: This Group Policy path does not exist by default. An additional Group Policy template ( firefox.admx/adml ) is required - it is available to download at this

link

.

Impact:

Adobe Flash will not be available, and some websites might not function properly.

See Also

https://workbench.cisecurity.org/benchmarks/18454

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CM-10, 800-53|CM-11, 800-53|SC-18, CSCv7|7.2

Plugin: Windows

Control ID: 6b259adc1a797a396a2a031ba1466d340d21c4c5222a19dc27c41b0e49810588