Skip to main content
CUI

POAM Items

Showing 50 of 246 grouped items (247 total POA&Ms) — Page 2 of 5
Item # Assets Title Severity Progress Status Due Date Close Actions
POAM-00036 T-ESD-1 V-223311: VBA Macros not digitally signed must be blocked in Excel. CAT I
0/4
Open 5 days left View Mappings
POAM-00037 T-ESD-1 V-223312: Dynamic Data Exchange (DDE) server launch in Excel must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00038 T-ESD-1 V-223313: Dynamic Data Exchange (DDE) server lookup in Excel must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00039 T-ESD-1 V-223323: Open/save of Excel 95 workbooks must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00040 T-ESD-1 V-223324: Open/save of Excel 95-97 workbooks and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00041 T-ESD-1 V-223328: Updating of links in Excel must be prompted and not automatic. CAT I
0/4
Open 5 days left View Mappings
POAM-00042 T-ESD-1 V-223329: Loading of pictures from Web pages not created in Excel must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00043 T-ESD-1 V-223330: AutoRepublish in Excel must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00044 T-ESD-1 V-223331: AutoRepublish warning alert in Excel must be enabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00045 T-ESD-1 V-223332: File extensions must be enabled to match file types in Excel. CAT I
0/4
Open 5 days left View Mappings
POAM-00046 T-ESD-1 V-223338: Untrusted Microsoft Query files must be blocked from opening in Excel. CAT I
0/4
Open 5 days left View Mappings
POAM-00047 T-ESD-1 V-223339: Untrusted database files must be opened in Excel in Protected View mode. CAT I
0/4
Open 5 days left View Mappings
POAM-00048 T-ESD-1 V-223350: Files dragged from an Outlook e-mail to the file system must be created in ANSI format. CAT I
0/4
Open 5 days left View Mappings
POAM-00049 T-ESD-1 V-223351: The junk email protection level must be set to No Automatic Filtering. CAT I
0/4
Open 5 days left View Mappings
POAM-00050 T-ESD-1 V-223355: The Publish to Global Address List (GAL) button must be disabled in Outlook. CAT I
0/4
Open 5 days left View Mappings
POAM-00051 T-ESD-1 V-223357: The warning about invalid digital signatures must be enabled to warn Outlook users. CAT I
0/4
Open 5 days left View Mappings
POAM-00052 T-ESD-1 V-223360: The ability to demote attachments from Level 2 to Level 1 must be disabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00053 T-ESD-1 V-223377: VBA Macros not digitally signed must be blocked in PowerPoint. CAT I
0/4
Open 5 days left View Mappings
POAM-00054 T-ESD-1 V-223379: Open/Save of PowerPoint 97-2003 presentations, shows, templates, and add-in files must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00055 T-ESD-1 V-223385: Files downloaded from the Internet must be opened in Protected view in PowerPoint. CAT I
0/4
Open 5 days left View Mappings
POAM-00056 T-ESD-1 V-223387: Files in unsafe locations must be opened in Protected view in PowerPoint. CAT I
0/4
Open 5 days left View Mappings
POAM-00057 T-ESD-1 V-223408: Open/Save of Word 2000 binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00058 T-ESD-1 V-223409: Open/Save of Word 2003 binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00059 T-ESD-1 V-223410: Open/Save of Word 2007 and later binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00060 T-ESD-1 V-223412: Open/Save of Word 95 binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00061 T-ESD-1 V-223413: Open/Save of Word 97 binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00062 T-ESD-1 V-223414: Open/Save of Word XP binary documents and templates must be blocked. CAT I
0/4
Open 5 days left View Mappings
POAM-00063 T-ESD-1 V-223417: VBA Macros not digitally signed must be blocked in Word. CAT I
0/4
Open 5 days left View Mappings
POAM-00065 T-ESD-1 V-220705: The operating system must employ a deny-all, permit-by-exception policy to allow the execution of au CAT I
0/4
Open 5 days left View Mappings
POAM-00066 T-ESD-1 V-220716: Accounts must be configured to require password expiration. CAT I
0/4
Open 5 days left View Mappings
POAM-00069 T-ESD-1 V-220836: The Windows Defender SmartScreen for Explorer must be enabled. CAT I
0/4
Open 5 days left View Mappings
POAM-00070 T-ESD-1 V-220952: Passwords for enabled local Administrator accounts must be changed at least every 60 days. CAT I
0/4
Open 5 days left View Mappings
POAM-00071 T-ESD-1 V-220957: The Access this computer from the network user right must only be assigned to the Administrators and CAT I
0/4
Open 5 days left View Mappings
POAM-00072 T-ESD-1 V-220968: The Deny access to this computer from the network user right on workstations must be configured to p CAT I
0/4
Open 5 days left View Mappings
POAM-00073 T-ESD-1 V-220970: The Deny log on as a service user right on Windows 10 domain-joined workstations must be configured CAT I
0/4
Open 5 days left View Mappings
POAM-00074 T-ESD-1 V-220971: The Deny log on locally user right on workstations must be configured to prevent access from highly CAT I
0/4
Open 5 days left View Mappings
POAM-00075 T-ESD-1 V-220972: The Deny log on through Remote Desktop Services user right on Windows 10 workstations must at a mini CAT I
0/4
Open 5 days left View Mappings
POAM-00077 T-ESD-1 V-257589: Windows 10 must have command line process auditing events enabled for failures. CAT I
0/4
Open 5 days left View Mappings
POAM-00078 T-ESD-1 V-268315: Copilot in Windows must be disabled for Windows 10. CAT I
0/4
Open 5 days left View Mappings
POAM-00079 T-ESD-1 V-245874: Adobe Acrobat Pro DC Continuous FIPS mode must be enabled. CAT I
0/1
Open 5 days left View Mappings
POAM-00080 T-ESD-1 V-225238: Update and configure the .NET Framework to support TLS. CAT I
0/12
Open 5 days left View Mappings
POAM-00083 T-ESD-1 V-224820: Passwords for the built-in Administrator account must be changed at least every 60 days. CAT I
0/8
Open 5 days left View Mappings
POAM-00085 T-ESD-1 V-224825: Shared user accounts must not be permitted on the system. CAT I
0/8
Open 5 days left View Mappings
POAM-00086 T-ESD-1 V-224826: Windows Server 2016 must employ a deny-all, permit-by-exception policy to allow the execution of aut CAT I
0/8
Open 5 days left View Mappings
POAM-00087 T-ESD-1 V-224838: Windows Server 2016 accounts must require passwords. CAT I
0/8
Open 5 days left View Mappings
POAM-00088 T-ESD-1 V-224839: Passwords must be configured to expire. CAT I
0/8
Open 5 days left View Mappings
POAM-00089 T-ESD-1 V-224840: System files must be monitored for unauthorized changes. CAT I
0/8
Open 5 days left View Mappings
POAM-00090 T-ESD-1 V-224845: The roles and features required by the system must be documented. CAT I
0/8
Open 5 days left View Mappings
POAM-00091 T-ESD-1 V-224875: Audit records must be backed up to a different system or media than the system being audited. CAT I
0/8
Open 5 days left View Mappings
POAM-00092 T-ESD-1 V-224876: Windows Server 2016 must, at a minimum, offload audit records of interconnected systems in real time CAT I
0/8
Open 5 days left View Mappings
Page 2 of 5
CUI