| Vuln ID | Severity | Asset | STIG | Title | Status | Doc Status | Assigned To | Actions |
|---|---|---|---|---|---|---|---|---|
| V-223301 | CAT II | MONT-WS-92040 | Microsoft Office 365 ProPlus Security Te... | The MIME Sniffing safety feature must be enabled i... | - | |||
Check TextVerify the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature is set to "Enabled" and the check box is selected for every installed Office program. Use the Windows Registry Editor to navigate to the following key: HKLM\software\microsoft\internet explorer\main\featurecontrol\feature_mime_sniffing If the value for all installed Office Programs is REG_DWORD = 1, this is not a finding. Fix TextSet the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature to "Enabled" for all installed Office programs. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-Office365_Checks) found this to be OPEN on 10/23/2025 ResultHash: CFCC40024D675A58F96279F54C4DA9512ACD98C5 ~~~~~ Installed Programs: Excel, Outlook, PowerPoint, Word Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: excel.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: outlook.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: powerpnt.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: winword.exe (Not found)
Source: _Reviewed/MONT-WS-92040/Checklist/MONT-WS-92040_MSOffice365_V3R3_20251023-142330.ckl
Scan Date: 2026-01-14T12:57:25.987513
Technology Area: Windows Operating System
|
||||||||
| V-223301 | CAT II | MONT-WS-92010 | Microsoft Office 365 ProPlus Security Te... | The MIME Sniffing safety feature must be enabled i... | - | |||
Check TextVerify the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature is set to "Enabled" and the check box is selected for every installed Office program. Use the Windows Registry Editor to navigate to the following key: HKLM\software\microsoft\internet explorer\main\featurecontrol\feature_mime_sniffing If the value for all installed Office Programs is REG_DWORD = 1, this is not a finding. Fix TextSet the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature to "Enabled" for all installed Office programs. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-Office365_Checks) found this to be OPEN on 10/23/2025 ResultHash: CFCC40024D675A58F96279F54C4DA9512ACD98C5 ~~~~~ Installed Programs: Excel, Outlook, PowerPoint, Word Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: excel.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: outlook.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: powerpnt.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: winword.exe (Not found)
Source: _Reviewed/MONT-WS-92010/Checklist/MONT-WS-92010_MSOffice365_V3R3_20251023-141031.ckl
Scan Date: 2026-01-14T12:57:28.231385
Technology Area: Windows Operating System
|
||||||||
| V-223301 | CAT II | MONT-SW-89108 | Microsoft Office 365 ProPlus Security Te... | The MIME Sniffing safety feature must be enabled i... | - | |||
Check TextVerify the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature is set to "Enabled" and the check box is selected for every installed Office program. Use the Windows Registry Editor to navigate to the following key: HKLM\software\microsoft\internet explorer\main\featurecontrol\feature_mime_sniffing If the value for all installed Office Programs is REG_DWORD = 1, this is not a finding. Fix TextSet the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature to "Enabled" for all installed Office programs. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-Office365_Checks) found this to be OPEN on 12/17/2025 ResultHash: B0007D250E40573F072AC78311ACB6CD5E94AC60 ~~~~~ Installed Programs: Access, Excel, Outlook, PowerPoint, Word Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: msaccess.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: excel.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: outlook.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: powerpnt.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: winword.exe Value: 0x00000001 (1) Type: REG_DWORD
Source: MONT-SW-89108_MSOffice365_V3R4_20251217-202911.ckl
Scan Date: 2026-03-04T15:25:16.145630
Technology Area: Windows Operating System
|
||||||||
| V-223301 | CAT II | MONT-SW-89134 | Microsoft Office 365 ProPlus Security Te... | The MIME Sniffing safety feature must be enabled i... | - | |||
Check TextVerify the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature is set to "Enabled" and the check box is selected for every installed Office program. Use the Windows Registry Editor to navigate to the following key: HKLM\software\microsoft\internet explorer\main\featurecontrol\feature_mime_sniffing If the value for all installed Office Programs is REG_DWORD = 1, this is not a finding. Fix TextSet the policy value for Computer Configuration >> Administrative Templates >> Microsoft Office 2016 (Machine) >> Security Settings >> IE Security >> Mime Sniffing Safety Feature to "Enabled" for all installed Office programs. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-Office365_Checks) found this to be OPEN on 12/17/2025 ResultHash: B0007D250E40573F072AC78311ACB6CD5E94AC60 ~~~~~ Installed Programs: Access, Excel, Outlook, PowerPoint, Word Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: msaccess.exe (Not found) Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: excel.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: outlook.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: powerpnt.exe Value: 0x00000001 (1) Type: REG_DWORD Registry Path: HKLM:\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING Value Name: winword.exe Value: 0x00000001 (1) Type: REG_DWORD
Source: MONT-SW-89134_MSOffice365_V3R4_20251217-201101.ckl
Scan Date: 2026-03-04T15:25:42.171357
Technology Area: Windows Operating System
|
||||||||