Skip to main content
CUI

POAM Items

Showing 50 of 246 grouped items (247 total POA&Ms) — Page 1 of 5
Item # Assets Title Severity Progress Status Due Date Close Actions
POAM-00003 T-ESD-1 V-215823: The Cisco router must be configured to prohibit the use of all unnecessary and nonsecure functions a CAT I
0/1
Open 55 days overdue View Mappings
POAM-00005 T-ESD-1 V-215833: The Cisco router must be configured to terminate all network connections associated with device mana CAT I
0/1
Open 55 days overdue View Mappings
POAM-00007 T-ESD-1 V-215844: The Cisco router must be configured to use FIPS-validated Keyed-Hash Message Authentication Code (HM CAT I
0/1
Open 55 days overdue View Mappings
POAM-00010 T-ESD-1 V-220139: The Cisco router must be configured to send log data to at least two syslog servers for the purpose CAT I
0/1
Open 55 days overdue View Mappings
POAM-00011 T-ESD-1 V-220140: The Cisco router must be running an IOS release that is currently supported by Cisco Systems. CAT I
0/1
Open 55 days overdue View Mappings
POAM-00064 T-ESD-1 V-220703: Windows 10 systems must use a BitLocker PIN for pre-boot authentication. CAT I
0/4
Open 55 days overdue View Mappings
POAM-00067 T-ESD-1 V-220726: Data Execution Prevention (DEP) must be configured to at least OptOut. CAT I
0/2
Open 55 days overdue View Mappings
POAM-00068 T-ESD-1 V-220737: Administrative accounts must not be used with applications that access the Internet, such as web bro CAT I
0/4
Open 55 days overdue View Mappings
POAM-00082 T-ESD-1 V-224819: Users with Administrative privileges must have separate accounts for administrative duties and norma CAT I
0/8
Open 55 days overdue View Mappings
POAM-00084 T-ESD-1 V-224821: Administrative accounts must not be used with applications that access the Internet, such as web bro CAT I
0/8
Open 55 days overdue View Mappings
POAM-00093 T-ESD-1 V-225007: Only administrators responsible for the member server or standalone or nondomain-joined system must CAT I
0/8
Open 55 days overdue View Mappings
POAM-00124 T-ESD-1 V-218768: The IIS 10.0 private website must employ cryptographic mechanisms (TLS) and require client certifica CAT I
0/3
Open 55 days overdue View Mappings
POAM-00157 T-ESD-1 V-225012: Windows Server 2016 must be running Credential Guard on domain-joined member servers. CAT I
0/8
Open 55 days overdue View Mappings
POAM-00160 T-ESD-1 V-218802: IIS 10.0 Web server accounts accessing the directory tree, the shell, or other operating system func CAT I
0/2
Open 55 days overdue View Mappings
POAM-00161 T-ESD-1 V-218823: All accounts installed with the IIS 10.0 web server software and tools must have passwords assigned CAT I
0/2
Open 55 days overdue View Mappings
POAM-00171 T-ESD-1 V-243466: Membership to the Enterprise Admins group must be restricted to accounts used only to manage the Act CAT I
0/1
Open 55 days overdue View Mappings
POAM-00172 T-ESD-1 V-243467: Membership to the Domain Admins group must be restricted to accounts used only to manage the Active CAT I
0/1
Open 55 days overdue View Mappings
POAM-00175 T-ESD-1 V-243470: Delegation of privileged accounts must be prohibited. CAT I
0/1
Open 55 days overdue View Mappings
POAM-00195 T-ESD-1 V-224993: PKI certificates associated with user accounts must be issued by the DoD PKI or an approved External CAT I
0/8
Open 55 days overdue View Mappings
POAM-00206 T-ESD-1 V-271430: Windows Server 2016 must be configured for name-based strong mappings for certificates. CAT I
0/8
Open 55 days overdue View Mappings
POAM-00001 T-ESD-1 V-215807: The Cisco router must be configured to limit the number of concurrent management sessions to an orga CAT I
0/1
Open 5 days left View Mappings
POAM-00002 T-ESD-1 V-215814: The Cisco router must be configured to display the Standard Mandatory DoD Notice and Consent Banner CAT I
0/1
Open 5 days left View Mappings
POAM-00004 T-ESD-1 V-215824: The Cisco router must be configured with only one local account to be used as the account of last re CAT I
0/1
Open 5 days left View Mappings
POAM-00006 T-ESD-1 V-215836: The Cisco router must be configured to allocate audit record storage capacity in accordance with org CAT I
0/1
Open 5 days left View Mappings
POAM-00008 T-ESD-1 V-215855: The Cisco router must be configured to back up the configuration when changes occur. CAT I
0/1
Open 5 days left View Mappings
POAM-00009 T-ESD-1 V-215856: The Cisco router must be configured to obtain its public key certificates from an appropriate certif CAT I
0/1
Open 5 days left View Mappings
POAM-00012 T-ESD-1 V-213193: Adobe Reader DC must enable FIPS mode. CAT I
0/3
Open 5 days left View Mappings
POAM-00013 T-ESD-1 V-245539: Session only based cookies must be enabled. CAT I Open 5 days left View Mappings
POAM-00014 T-ESD-1 V-275780: Create Themes with AI must be disabled. CAT I Open 5 days left View Mappings
POAM-00015 T-ESD-1 V-275781: DevTools Generative AI features must be disabled. CAT I Open 5 days left View Mappings
POAM-00016 T-ESD-1 V-275782: GenAI local foundational model must be disabled. CAT I Open 5 days left View Mappings
POAM-00017 T-ESD-1 V-275783: Help Me Write must be disabled. CAT I Open 5 days left View Mappings
POAM-00018 T-ESD-1 V-275784: AI-powered History Search must be disabled. CAT I Open 5 days left View Mappings
POAM-00019 T-ESD-1 V-275785: Tab Compare Settings must be disabled. CAT I Open 5 days left View Mappings
POAM-00020 T-ESD-1 V-251553: Firefox must be configured to block pop-up windows. CAT I
0/4
Open 5 days left View Mappings
POAM-00021 T-ESD-1 V-252908: Pocket must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00022 T-ESD-1 V-252909: Firefox Studies must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00023 T-ESD-1 V-260465: Visual Search must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00024 T-ESD-1 V-260466: Copilot must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00025 T-ESD-1 V-260467: Session only-based cookies must be enabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00026 T-ESD-1 V-266981: FriendlyURLs must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00027 T-ESD-1 V-223284: The Macro Runtime Scan Scope must be enabled for all documents. CAT I
0/4
Open 5 days left View Mappings
POAM-00028 T-ESD-1 V-223286: The Office client must be prevented from polling the SharePoint Server for published links. CAT I
0/4
Open 5 days left View Mappings
POAM-00029 T-ESD-1 V-223287: Custom user interface (UI) code must be blocked from loading in all Office applications. CAT I
0/4
Open 5 days left View Mappings
POAM-00030 T-ESD-1 V-223297: Consistent MIME handling must be enabled for all Office 365 ProPlus programs. CAT I
0/4
Open 5 days left View Mappings
POAM-00031 T-ESD-1 V-223299: The Information Bar must be enabled in all Office programs. CAT I
0/4
Open 5 days left View Mappings
POAM-00032 T-ESD-1 V-223300: The Local Machine Zone Lockdown Security must be enabled in all Office programs. CAT I
0/4
Open 5 days left View Mappings
POAM-00033 T-ESD-1 V-223301: The MIME Sniffing safety feature must be enabled in all Office programs. CAT I
0/4
Open 5 days left View Mappings
POAM-00034 T-ESD-1 V-223303: Object Caching Protection must be enabled in all Office programs. CAT I
0/4
Open 5 days left View Mappings
POAM-00035 T-ESD-1 V-223309: Flash player activation must be disabled in all Office programs. CAT I
0/4
Open 5 days left View Mappings
Page 1 of 5
CUI