Skip to main content
CUI

Documentation - V-222574

V-222574

Application Security and Development Security Technical Implementation Guide

CAT II

Title

The application user interface must be either physically or logically separated from data storage and management interfaces.

Description

<VulnDiscussion>Application management functionality includes functions necessary for administration and requires privileged user access. Allowing non-privileged users to access application management functionality capabilities increases the risk that non-privileged users may obtain elevated privileges. The separation of user functionality from information system management functionality is either physical or logical and is accomplished by using different computers, different central processing...

Fix Text (Documentation Requirement)

Configure the application so user interface to the application and management interface to the application is separated.

Documentation Status

Cancel
CUI