Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CAT
II
CAT
CAT|II
Title
DISA Severity Level 2
Description
Any vulnerability, the exploitation of which has a potential to result in loss of Confidentiality, Availability, or Integrity.
Reference Item Details
Reference:
CAT - DISA Severity Level
Category:
Severity Level
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
1.001 - Physical security of the Automated Information System (AIS) does not meet DISA requirements.
Windows
DISA Windows Vista STIG v6r41
1.007 - Members of the Backup Operators group must have separate accounts for backup duties and normal operational tasks.
Windows
DISA Windows Vista STIG v6r41
1.008 - Shared user accounts are permitted on the system.
Windows
DISA Windows Vista STIG v6r41
2.001 - Permissions for event logs must conform to minimum requirements - application.evtx
Windows
DISA Windows Vista STIG v6r41
2.001 - Permissions for event logs must conform to minimum requirements - security.evtx
Windows
DISA Windows Vista STIG v6r41
2.001 - Permissions for event logs must conform to minimum requirements - system.evtx
Windows
DISA Windows Vista STIG v6r41
2.006 - ACLs for system files and directories do not conform to minimum requirements. - 'C:'
Windows
DISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Program Files'
Windows
DISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Windows'
Windows
DISA Windows Vista STIG v6r41
2.014 - ACLs for disabled services do not conform to minimum standards.
Windows
DISA Windows Vista STIG v6r41
2.015 - File share ACLs have not been reconfigured to remove the Everyone group.
Windows
DISA Windows Vista STIG v6r41
2.019 - Security-related Software Patches are not applied.
Windows
DISA Windows Vista STIG v6r41
2.021 - Remove Software Certificate Installation Files
Windows
DISA Windows Vista STIG v6r41
3.011 - The required legal notice must be configured to display before console logon.
Windows
DISA Windows Vista STIG v6r41
3.028 - The built-in Windows password complexity policy must be enabled.
Windows
DISA Windows Vista STIG v6r41
3.032 - Ctrl+Alt+Del security attention sequence is Disabled.
Windows
DISA Windows Vista STIG v6r41
3.034 - Unencrypted passwords must not be sent to third-party SMB Servers.
Windows
DISA Windows Vista STIG v6r41
3.040 - Automatic logons must be disabled.
Windows
DISA Windows Vista STIG v6r41
3.042 - Outgoing secure channel traffic is not signed when possible.
Windows
DISA Windows Vista STIG v6r41
3.043 - Outgoing secure channel traffic is not encrypted when possible.
Windows
DISA Windows Vista STIG v6r41
3.045 - The Windows SMB client is not enabled to perform SMB packet signing when possible.
Windows
DISA Windows Vista STIG v6r41
3.046 - The Windows SMB server is not enabled to perform SMB packet signing when possible.
Windows
DISA Windows Vista STIG v6r41
3.047 - The Smart Card removal option is set to take no action.
Windows
DISA Windows Vista STIG v6r41
3.052 - Ejection of removable NTFS media is not restricted to Administrators.
Windows
DISA Windows Vista STIG v6r41
3.057 - Reversible password encryption is not disabled.
Windows
DISA Windows Vista STIG v6r41
3.070 - The system is configured to permit storage of credentials or .NET Passports.
Windows
DISA Windows Vista STIG v6r41
3.071 - The system is configured to give anonymous users Everyone rights.
Windows
DISA Windows Vista STIG v6r41
3.072 - The system is not configured to use the Classic security model.
Windows
DISA Windows Vista STIG v6r41
3.074 - The system is not configured to force users to log off when their allowed logon hours expire.
Windows
DISA Windows Vista STIG v6r41
3.075 - The system is not configured to recommended LDAP client signing requirements.
Windows
DISA Windows Vista STIG v6r41
3.076 - The system is not configured to meet the minimum requirement for session security for NTLM SSP based Clients.
Windows
DISA Windows Vista STIG v6r41
3.077 - The system is not configured to use FIPS compliant Algorithms for Encryption, Hashing, and Signing.
Windows
DISA Windows Vista STIG v6r41
3.078 - The system must be configured to require case insensitivity for non-Windows subsystems.
Windows
DISA Windows Vista STIG v6r41
3.082 - The system is configured to allow unsolicited remote assistance offers.
Windows
DISA Windows Vista STIG v6r41
3.088 - The system is not configured to use Safe DLL Search Mode.
Windows
DISA Windows Vista STIG v6r41
3.089 - The system is not configured to meet the minimum requirement for session security for NTLM SSP based Servers.
Windows
DISA Windows Vista STIG v6r41
3.112 - Group Policy objects are not reprocessed if they have not changed.
Windows
DISA Windows Vista STIG v6r41
3.113 - Outgoing secure channel traffic is not encrypted or signed.
Windows
DISA Windows Vista STIG v6r41
3.114 - The Windows Server SMB client is not enabled to always perform SMB packet signing.
Windows
DISA Windows Vista STIG v6r41
3.115 - The Windows Server SMB server is not enabled to always perform SMB packet signing.
Windows
DISA Windows Vista STIG v6r41
3.121 - The system does not have a backup administrator account
Windows
DISA Windows Vista STIG v6r41
3.122 - Administrator Passwords are changed when necessary.
Windows
DISA Windows Vista STIG v6r41
3.123 - Auditing Access of Global System Objects must be turned off.
Windows
DISA Windows Vista STIG v6r41
3.124 - Audit of Backup and Restore Privileges is not turned off.
Windows
DISA Windows Vista STIG v6r41
3.125 - Audit policy using subcategories is enabled.
Windows
DISA Windows Vista STIG v6r41
3.129 - User Account Control - Built In Admin Approval Mode
Windows
DISA Windows Vista STIG v6r41
3.130 - User Account Control - Behavior of elevation prompt for administrators
Windows
DISA Windows Vista STIG v6r41
3.131 - User Account Control - Behavior of elevation prompt for standard users.
Windows
DISA Windows Vista STIG v6r41
3.132 - User Account Control - Detect Application Installations
Windows
DISA Windows Vista STIG v6r41
3.134 - User Account Control - Elevate UIAccess applications that are in secure locations
Windows
DISA Windows Vista STIG v6r41