DTOO289 - PowerPoint - Disable the ability to run programs from a PowerPoint presentation.

Information

Action buttons can be used to launch external programs from PowerPoint 2007 presentations. If a malicious person adds an action button to a presentation that launches a dangerous program, it could significantly affect the security of a user's computer and data.

Solution

The policy value for User Configuration -> Administrative Templates -> Microsoft Office PowerPoint 2007 -> PowerPoint Options -> Security 'Run Programs' will be set to 'Enabled (disable (don't run any programs))'.

See Also

http://iase.disa.mil/stigs/app_security/office_auto/u_microsoft_office2007_v4r9_stig_20121026.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(2), CAT|II, Rule-ID|SV-19007r2_rule, STIG-ID|DTOO289, Vuln-ID|V-17788

Plugin: Windows

Control ID: fe21945b9a456d4c79e5733761de75c9575d7d7fb9454cd6855c5cf755ce5770