DTOO234 - Outlook - Do not allow Active X One-Off forms to be used in Outlook.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

By default, third-party ActiveX controls are not allowed to run in one-off forms in Outlook. You can change this behavior so that Safe Controls (Microsoft Forms 2.0 controls and the Outlook Recipient and Body controls) are allowed in one-off forms, or so that all ActiveX controls are allowed to run.

Solution

The policy value for User Configuration -> Administrative Templates -> Microsoft Office Outlook 2007 -> Security 'Allow Active X One Off Forms' will be set to 'Disabled'.

See Also

http://iase.disa.mil/stigs/app_security/office_auto/u_microsoft_office2007_v4r9_stig_20121026.zip

Item Details

References: CAT|II, Rule-ID|SV-18657r2_rule, STIG-ID|DTOO234, Vuln-ID|V-17559

Plugin: Windows

Control ID: a66b4d88e73b7bd15f17e204a9029178f8237fdb2d7fda85b1653c317946f04c