DTOO001 - The Macro Security Level option in Office - Outlook.

Information

'HKU\Software\Microsoft\Office\11.0\Outlook\Security\Level' - The Macro Security Level option in Office 2000, XP (2002), or 2003 applications is not set to Medium, High, or Very High. The security level controls the action of macros. Macros can be embedded into documents to be executed at the time the document is opened. This can potentially intitiate a malicious action.

Solution

For each Office 2000/Office XP/Office2003 application, perform the check once. Start the application and on the Tools menu, select the Macro item. On the Macro menu, select the Security... item. On the Security window, select the Security Level tab. On the Security Level tab, change the value of the Security Level option so that it specifies Very High, High, or Medium.

See Also

http://iase.disa.mil/stigs/app_security/office_auto/u_microsoft_office2003_v4r3_stig_20120427.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CAT|II, Rule-ID|SV-6396r3_rule, STIG-ID|DTOO001, Vuln-ID|V-6326

Plugin: Windows

Control ID: 7ed98ae542ace155732b1fefe6289cb5b53222de20865b17d51c64e6dbe7a6a1