Skip to main content
CUI

USNS MONTFORD POINT - Findings

Back to Ship Export CSV Download POA&M
Switch to Flat View
Showing 50 unique vulnerabilities (1514 total) View Documentation Status (90 tracked)
V-220903 CAT II The DoD Root CA certificates must be installed in the Truste...
4 assets 1 Open 2 Closed Microsoft Windows 10...
V-224923 CAT II Windows Server 2016 virtualization-based security must be en...
8 assets 1 Open 7 Closed Documented Pending Review Microsoft Windows Se...
V-224940 CAT II Windows Server 2016 Windows SmartScreen must be enabled.
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-224976 CAT II Domain controllers must run on a machine dedicated to that f...
8 assets 1 Open Microsoft Windows Se...
V-224981 CAT II The Active Directory Domain object must be configured with p...
8 assets 1 Open Documented Pending Review Microsoft Windows Se...
V-224982 CAT II The Active Directory Infrastructure object must be configure...
8 assets 1 Open Documented Pending Review Microsoft Windows Se...
V-224983 CAT II The Active Directory Domain Controllers Organizational Unit ...
8 assets 1 Open Documented Pending Review Microsoft Windows Se...
V-224984 CAT II The Active Directory AdminSDHolder object must be configured...
8 assets 1 Open Documented Pending Review Microsoft Windows Se...
V-224985 CAT II The Active Directory RID Manager$ object must be configured ...
8 assets 1 Open Documented Pending Review Microsoft Windows Se...
V-224994 CAT II Active Directory user accounts, including administrators, mu...
8 assets 1 Open Microsoft Windows Se...
V-224995 CAT II Domain controllers must require LDAP access signing.
8 assets 1 Open Microsoft Windows Se...
V-224997 CAT II The Access this computer from the network user right must on...
8 assets 1 Open Microsoft Windows Se...
V-224998 CAT II The Add workstations to domain user right must only be assig...
8 assets 1 Open Microsoft Windows Se...
V-225016 CAT II The "Deny log on as a batch job" user right on member server...
8 assets 1 Open 6 Closed Microsoft Windows Se...
V-225072 CAT II The Allow log on locally user right must only be assigned to...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225073 CAT II The Back up files and directories user right must only be as...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225080 CAT II The Force shutdown from a remote system user right must only...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225082 CAT II The Impersonate a client after authentication user right mus...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225084 CAT II The Load and unload device drivers user right must only be a...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225086 CAT II The Manage auditing and security log user right must only be...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225092 CAT II The Restore files and directories user right must only be as...
8 assets 1 Open 7 Closed Microsoft Windows Se...
V-225224 CAT II The Trust Providers Software Publishing State must be set to...
12 assets 1 Open 9 Closed Microsoft DotNet Fra...
V-225233 CAT II Trust must be established prior to enabling the loading of r...
12 assets 1 Open 11 Closed Microsoft DotNet Fra...
V-225236 CAT II Software utilizing .Net 4.0 must be identified and relevant ...
12 assets 1 Open 11 Closed Microsoft DotNet Fra...
V-228355 CAT II Exchange servers must use approved DoD certificates.
1 asset 1 Open Microsoft Exchange 2...
V-228358 CAT II The Exchange Email Diagnostic log level must be set to the l...
1 asset 1 Open Microsoft Exchange 2...
V-228361 CAT II Exchange Email Subject Line logging must be disabled.
1 asset 1 Open Microsoft Exchange 2...
V-228363 CAT II Exchange Queue monitoring must be configured with threshold ...
1 asset 1 Open Microsoft Exchange 2...
V-228370 CAT II Exchange Local machine policy must require signed scripts.
1 asset 1 Open Documented Pending Review Microsoft Exchange 2...
V-228371 CAT II The Exchange Internet Message Access Protocol 4 (IMAP4) serv...
1 asset 1 Open Microsoft Exchange 2...
V-228372 CAT II The Exchange Post Office Protocol 3 (POP3) service must be d...
1 asset 1 Open Microsoft Exchange 2...
V-228376 CAT II Exchange Mailboxes must be retained until backups are comple...
1 asset 1 Open Microsoft Exchange 2...
V-228391 CAT II Exchange Internal Receive connectors must not allow anonymou...
1 asset 1 Open Microsoft Exchange 2...
V-228392 CAT II Exchange external/Internet-bound automated response messages...
1 asset 1 Open Microsoft Exchange 2...
V-228402 CAT II Exchange software must be monitored for unauthorized changes...
1 asset 1 Open Microsoft Exchange 2...
V-228404 CAT II Exchange Outlook Anywhere clients must use NTLM authenticati...
1 asset 1 Open Microsoft Exchange 2...
V-228406 CAT II Exchange must not send delivery reports to remote domains.
1 asset 1 Open Microsoft Exchange 2...
V-228407 CAT II Exchange must not send nondelivery reports to remote domains...
1 asset 1 Open Microsoft Exchange 2...
V-228408 CAT II The Exchange SMTP automated banner response must not reveal ...
1 asset 1 Open Microsoft Exchange 2...
V-228409 CAT II Exchange Internal Send connectors must use an authentication...
1 asset 1 Open Microsoft Exchange 2...
V-228410 CAT II Exchange must provide Mailbox databases in a highly availabl...
1 asset 1 Open Microsoft Exchange 2...
V-228417 CAT II Exchange must have forms-based authentication disabled.
1 asset 1 Open Microsoft Exchange 2...
V-228418 CAT II Exchange must have authenticated access set to Integrated Wi...
1 asset 1 Open Microsoft Exchange 2...
V-228572 CAT II An IIS Server configured to be a SMTP relay must require aut...
2 assets 1 Open Microsoft IIS 10.0 S...
V-243468 CAT II Administrators must have separate accounts specifically for ...
1 asset 1 Open Documented Pending Review Active Directory Dom...
V-243469 CAT II Administrators must have separate accounts specifically for ...
1 asset 1 Open Documented Pending Review Active Directory Dom...
V-243471 CAT II Local administrator accounts on domain systems must not shar...
1 asset 1 Open Active Directory Dom...
V-243472 CAT II Separate smart cards must be used for Enterprise Admin (EA) ...
1 asset 1 Open Documented Pending Review Active Directory Dom...
V-243475 CAT II Domain controllers must be blocked from Internet access.
1 asset 1 Open Documented Pending Review Active Directory Dom...
V-243477 CAT II User accounts with domain level administrative privileges mu...
1 asset 1 Open Documented Pending Review Active Directory Dom...
Page 6 of 31
CUI