Skip to main content
CUI

USNS MONTFORD POINT - Findings

Back to Ship Export CSV Download POA&M
Switch to Flat View
Showing 50 unique vulnerabilities (1514 total) View Documentation Status (90 tracked)
V-275781 CAT II DevTools Generative AI features must be disabled.
4 assets 4 Open Google Chrome Curren...
V-275782 CAT II GenAI local foundational model must be disabled.
4 assets 4 Open Google Chrome Curren...
V-275783 CAT II Help Me Write must be disabled.
4 assets 4 Open Google Chrome Curren...
V-275784 CAT II AI-powered History Search must be disabled.
4 assets 4 Open Google Chrome Curren...
V-275785 CAT II Tab Compare Settings must be disabled.
4 assets 4 Open Google Chrome Curren...
V-213193 CAT II Adobe Reader DC must enable FIPS mode.
3 assets 3 Open Documented Pending Review Adobe Acrobat Reader...
V-218739 CAT II Both the log file and Event Tracing for Windows (ETW) for ea...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218741 CAT II The IIS 10.0 website must produce log records that contain s...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218742 CAT II The IIS 10.0 website must produce log records containing suf...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218743 CAT II The IIS 10.0 website must have Multipurpose Internet Mail Ex...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218744 CAT II Mappings to unused and vulnerable scripts on the IIS 10.0 we...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218749 CAT II A private IIS 10.0 website authentication mechanism must use...
3 assets 3 Open Documented Pending Review Microsoft IIS 10.0 S...
V-218763 CAT II The IIS 10.0 websites connectionTimeout setting must be expl...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218770 CAT II Cookies exchanged between the IIS 10.0 website and the clien...
3 assets 3 Open Microsoft IIS 10.0 S...
V-218782 CAT II The required DoD banner page must be displayed to authentica...
3 assets 3 Open Documented Pending Review Microsoft IIS 10.0 S...
V-220705 CAT II The operating system must employ a deny-all, permit-by-excep...
4 assets 3 Open Microsoft Windows 10...
V-224839 CAT II Passwords must be configured to expire.
8 assets 3 Open 5 Closed Documented Pending Review Microsoft Windows Se...
V-224842 CAT II Software certificate installation files must be removed from...
8 assets 3 Open 5 Closed Documented Pending Review Microsoft Windows Se...
V-218786 CAT II Both the log file and Event Tracing for Windows (ETW) for th...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218788 CAT II The IIS 10.0 web server must produce log records that contai...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218789 CAT II The IIS 10.0 web server must produce log records containing ...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218790 CAT II The log information from the IIS 10.0 web server must be pro...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218793 CAT II The IIS 10.0 web server must only contain functions necessar...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218797 CAT II The IIS 10.0 web server must be reviewed on a regular basis ...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218798 CAT II The IIS 10.0 web server must have Multipurpose Internet Mail...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218806 CAT II The IIS 10.0 web server must augment re-creation to a stable...
2 assets 2 Open Microsoft IIS 10.0 S...
V-218817 CAT II The IIS 10.0 web server must not be running on a system prov...
2 assets 2 Open Documented Pending Review Microsoft IIS 10.0 S...
V-218819 CAT II The IIS 10.0 web server must be tuned to handle the operatio...
2 assets 2 Open Microsoft IIS 10.0 S...
V-220836 CAT II The Windows Defender SmartScreen for Explorer must be enable...
4 assets 2 Open Microsoft Windows 10...
V-220957 CAT II The Access this computer from the network user right must on...
4 assets 2 Open 2 Closed Microsoft Windows 10...
V-220968 CAT II The Deny access to this computer from the network user right...
4 assets 2 Open 2 Closed Microsoft Windows 10...
V-220970 CAT II The Deny log on as a service user right on Windows 10 domain...
4 assets 2 Open Microsoft Windows 10...
V-220971 CAT II The Deny log on locally user right on workstations must be c...
4 assets 2 Open 2 Closed Microsoft Windows 10...
V-220972 CAT II The Deny log on through Remote Desktop Services user right o...
4 assets 2 Open 2 Closed Microsoft Windows 10...
V-223280 CAT II Macros must be blocked from running in Access files from the...
4 assets 2 Open Microsoft Office 365...
V-223284 CAT II The Macro Runtime Scan Scope must be enabled for all documen...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223286 CAT II The Office client must be prevented from polling the SharePo...
4 assets 2 Open 2 Closed Microsoft Office 365...
V-223287 CAT II Custom user interface (UI) code must be blocked from loading...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223309 CAT II Flash player activation must be disabled in all Office progr...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223312 CAT II Dynamic Data Exchange (DDE) server launch in Excel must be b...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223313 CAT II Dynamic Data Exchange (DDE) server lookup in Excel must be b...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223328 CAT II Updating of links in Excel must be prompted and not automati...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223329 CAT II Loading of pictures from Web pages not created in Excel must...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223330 CAT II AutoRepublish in Excel must be disabled.
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223331 CAT II AutoRepublish warning alert in Excel must be enabled.
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223332 CAT II File extensions must be enabled to match file types in Excel...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223338 CAT II Untrusted Microsoft Query files must be blocked from opening...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223339 CAT II Untrusted database files must be opened in Excel in Protecte...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223350 CAT II Files dragged from an Outlook e-mail to the file system must...
4 assets 2 Open 2 Closed Documented Pending Review Microsoft Office 365...
V-223351 CAT II The junk email protection level must be set to No Automatic ...
4 assets 2 Open Documented Pending Review Microsoft Office 365...
Page 4 of 31
CUI