Item Search

NameAudit NamePluginCategory
1.21 UBTU-22-232026CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.22 UBTU-22-232027CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.44 UBTU-22-232140CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.74 APPL-14-002021CIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.113 UBTU-24-700010CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.114 UBTU-24-700020CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.115 UBTU-24-700030CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.132 APPL-14-004001CIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.133 APPL-14-004002CIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.135 APPL-14-004030CIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

1.136 APPL-14-004040CIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

APPL-14-004001 - The macOS system must configure Apple System Log files to be owned by root and group to wheel.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-14-004002 - The macOS system must configure Apple System Log files to mode 640 or less permissive.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-14-004030 - The macOS system must configure system log files to be owned by root and group to wheel.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-14-004040 - The macOS system must configure system log files to mode 640 or less permissive.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-002021 - The macOS system must disable sending diagnostic and usage data to Apple.DISA Apple macOS 15 (Sequoia) STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-004001 - The macOS system must configure Apple System Log (ASL) files owned by root and group to wheel.DISA Apple macOS 15 (Sequoia) STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-004002 - The macOS system must configure Apple System Log (ASL) files to mode 640 or less permissive.DISA Apple macOS 15 (Sequoia) STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-004030 - The macOS system must configure system log files owned by root and group to wheel.DISA Apple macOS 15 (Sequoia) STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-004040 - The macOS system must configure system log files to mode 640 or less permissive.DISA Apple macOS 15 (Sequoia) STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

AS24-U2-000620 - The Apache web server must display a default hosted application web page, not a directory listing, when a requested web page cannot be found.DISA STIG Apache Server 2.4 Unix Site v2r6Unix

SYSTEM AND INFORMATION INTEGRITY

AS24-U2-000640 - Debugging and trace information used to diagnose the Apache web server must be disabled.DISA STIG Apache Server 2.4 Unix Site v2r6 MiddlewareUnix

SYSTEM AND INFORMATION INTEGRITY

AS24-W2-000610 - The Apache web server must display a default hosted application web page, not a directory listing, when a requested web page cannot be found.DISA STIG Apache Server 2.4 Windows Site v2r2Windows

SYSTEM AND INFORMATION INTEGRITY

DTBC-0068 - Chrome development tools must be disabled.DISA Google Chrome Current Windows STIG v2r11Windows

SYSTEM AND INFORMATION INTEGRITY

FFOX-00-000015 - Firefox development tools must be disabled.DISA STIG Mozilla Firefox Linux v6r6Unix

SYSTEM AND INFORMATION INTEGRITY

FFOX-00-000015 - Firefox development tools must be disabled.DISA STIG Mozilla Firefox MacOS v6r6Unix

SYSTEM AND INFORMATION INTEGRITY

IIST-SI-000234 - Debugging and trace information used to diagnose the IIS 10.0 website must be disabled.DISA IIS 10.0 Site v2r12Windows

SYSTEM AND INFORMATION INTEGRITY

IIST-SV-000139 - The IIS 10.0 web server Indexing must only index web content.DISA IIS 10.0 Server v3r4Windows

SYSTEM AND INFORMATION INTEGRITY

IIST-SV-000140 - Warning and error messages displayed to clients must be modified to minimize the identity of the IIS 10.0 web server, patches, loaded modules, and directory paths.DISA IIS 10.0 Server v2r10Windows

SYSTEM AND INFORMATION INTEGRITY

IIST-SV-000210 - HTTPAPI Server version must be removed from the HTTP Response Header information.DISA IIS 10.0 Server v2r10Windows

SYSTEM AND INFORMATION INTEGRITY

IISW-SI-000234 - Debugging and trace information used to diagnose the IIS 8.5 website must be disabled.DISA IIS 8.5 Site v2r9Windows

SYSTEM AND INFORMATION INTEGRITY

IISW-SV-000139 - The IIS 8.5 web server Indexing must only index web content.DISA IIS 8.5 Server v2r7Windows

SYSTEM AND INFORMATION INTEGRITY

MD3X-00-000520 - MongoDB must provide non-privileged users with error messages that provide information necessary for corrective actions without revealing information that could be exploited by adversaries.DISA STIG MongoDB Enterprise Advanced 3.x v2r3 OSUnix

SYSTEM AND INFORMATION INTEGRITY

OH12-1X-000349 - OHS must have the Alias /error directive defined to reference the directory accompanying the ErrorDocument directives to minimize the identity of OHS, patches, loaded modules, and directory paths in warning and error messages displayed to clients.DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

OH12-1X-000351 - OHS must have defined error pages for common error codes that minimize the identity of the web server, patches, loaded modules, and directory paths - ErrorDocument 400DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

OH12-1X-000351 - OHS must have defined error pages for common error codes that minimize the identity of the web server, patches, loaded modules, and directory paths - ErrorDocument 403DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

OH12-1X-000351 - OHS must have defined error pages for common error codes that minimize the identity of the web server, patches, loaded modules, and directory paths - ErrorDocument 411DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

PANW-IP-000031 - The Palo Alto Networks security platform must block malicious ICMP packets.DISA STIG Palo Alto IDPS v3r2Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

PGS9-00-000600 - PostgreSQL must provide non-privileged users with error messages that provide information necessary for corrective actions without revealing information that could be exploited by adversaries.DISA STIG PostgreSQL 9.x on RHEL DB v2r5PostgreSQLDB

SYSTEM AND INFORMATION INTEGRITY

SHPT-00-000810 - SharePoint must identify potentially security-relevant error conditions.DISA STIG SharePoint 2010 v1r9Windows

SYSTEM AND INFORMATION INTEGRITY

SYMP-AG-000590 - Symantec ProxySG must tailor the Exceptions messages to generate error messages that provide the information necessary for corrective actions without revealing information that could be exploited by adversaries.DISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

SYSTEM AND INFORMATION INTEGRITY

UBTU-20-010416 - The Ubuntu operating system must generate error messages that provide information necessary for corrective actions without revealing information that could be exploited by adversaries.DISA Canonical Ubuntu 20.04 LTS STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-232140 - Ubuntu 22.04 LTS must be configured so that the "journalctl" command is not accessible by unauthorized users.DISA Canonical Ubuntu 22.04 LTS STIG v2r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700010 - Ubuntu 24.04 LTS must generate error messages that provide information necessary for corrective actions without revealing information that could be exploited by adversaries.DISA Canonical Ubuntu 24.04 LTS STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700030 - Ubuntu 24.04 LTS must be configured so that the "journalctl" command is not accessible by unauthorized users.DISA Canonical Ubuntu 24.04 LTS STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

VCLU-80-000067 The vCenter Lookup service 'ErrorReportValve showServerInfo' must be set to 'false'.DISA VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v2r1Unix

SYSTEM AND INFORMATION INTEGRITY

VCPG-70-000016 - VMware Postgres must provide nonprivileged users with minimal error information.DISA STIG VMware vSphere 7.0 PostgreSQL v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

VCST-70-000023 - The Security Token Service must not show directory listings.DISA STIG VMware vSphere 7.0 STS Tomcat v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

WDNS-SI-000003 - The DNS Name Server software must be configured to refuse queries for its version information.DISA Microsoft Windows 2012 Server DNS STIG v2r7Windows

SYSTEM AND INFORMATION INTEGRITY

WDNS-SI-000004 - The HINFO, RP, TXT and LOC RR types must not be used in the zone SOA.DISA Microsoft Windows 2012 Server DNS STIG v2r7Windows

SYSTEM AND INFORMATION INTEGRITY