DTMO001- Outlook is not configured to use the Rest - Outlook.

Information

'HKU\Software\Microsoft\Office\11.0\Outlook\Options\General\Security Zone' - Outlook is not configured to use the Restricted Sites Security Zone. Outlook needs to run in the context of the restricted sites zone so when it processes messages in an HTML format the content of the message is controlled and the machine is protected from automatically executing mobile code.

Solution

In Outlook go to the Tools menu and select the Options... item. In the Options window, select the Security tab. Change the value of the Zone option to Restricted sites only.

See Also

http://iase.disa.mil/stigs/app_security/office_auto/u_microsoft_office2003_v4r3_stig_20120427.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18, CAT|II, Rule-ID|SV-6391r4_rule, STIG-ID|DTMO001, Vuln-ID|V-6321

Plugin: Windows

Control ID: 4fe063923daf22e864aa3df24187e59dab8fba40a4edadb23550331df16d88eb