| Vuln ID | Severity | Asset | STIG | Title | Status | Doc Status | Assigned To | Actions |
|---|---|---|---|---|---|---|---|---|
| V-251550 | CAT II | MONT-WS-92040 | Mozilla Firefox Security Technical Imple... | Firefox must be configured to not automatically ex... | - | |||
Check TextType "about:preferences" in the browser address bar. Type "Applications" in the Find bar in the upper-right corner. Determine if any of the following file extensions are listed: HTA, JSE, JS, MOCHA, SHS, VBE, VBS, SCT, WSC, FDF, XFDF, LSL, LSO, LSS, IQY, RQY, DOS, BAT, PS, EPS, WCH, WCM, WB1, WB3, WCH, WCM, AD. If the entry exists and the "Action" is "Save File" or "Always Ask", this is not a finding. If an extension exists and the entry in the Action column is associated with an application that does/can execute the code, this is a finding. Fix TextRemove any unauthorized extensions from the auto-download list. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-MozillaFirefox_Checks) found this to be NOT A FINDING on 10/23/2025 Username: MONTFORD-POINT\W.Admin UserSID: S-1-5-21-1360995287-4027491577-3040029667-1106 ResultHash: FDD7EC120C3A7E53B1B2F0B1FE803C005523274E ~~~~~ None of the extensions in question are configured.
Source: _Reviewed/MONT-WS-92040/Checklist/MONT-WS-92040_Firefox_V6R6_20251023-142444.ckl
Scan Date: 2026-01-14T12:57:25.596878
Technology Area: Windows Operating System
|
||||||||
| V-251550 | CAT II | MONT-WS-92010 | Mozilla Firefox Security Technical Imple... | Firefox must be configured to not automatically ex... | - | |||
Check TextType "about:preferences" in the browser address bar. Type "Applications" in the Find bar in the upper-right corner. Determine if any of the following file extensions are listed: HTA, JSE, JS, MOCHA, SHS, VBE, VBS, SCT, WSC, FDF, XFDF, LSL, LSO, LSS, IQY, RQY, DOS, BAT, PS, EPS, WCH, WCM, WB1, WB3, WCH, WCM, AD. If the entry exists and the "Action" is "Save File" or "Always Ask", this is not a finding. If an extension exists and the entry in the Action column is associated with an application that does/can execute the code, this is a finding. Fix TextRemove any unauthorized extensions from the auto-download list. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-MozillaFirefox_Checks) found this to be NOT A FINDING on 10/23/2025 Username: MONTFORD-POINT\D.Admin UserSID: S-1-5-21-1360995287-4027491577-3040029667-1104 ResultHash: FDD7EC120C3A7E53B1B2F0B1FE803C005523274E ~~~~~ None of the extensions in question are configured.
Source: _Reviewed/MONT-WS-92010/Checklist/MONT-WS-92010_Firefox_V6R6_20251023-141154.ckl
Scan Date: 2026-01-14T12:57:27.870047
Technology Area: Windows Operating System
|
||||||||
| V-251550 | CAT II | MONT-SW-89108 | Mozilla Firefox Security Technical Imple... | Firefox must be configured to not automatically ex... | - | |||
Check TextType "about:preferences" in the browser address bar. Type "Applications" in the Find bar in the upper-right corner. Determine if any of the following file extensions are listed: HTA, JSE, JS, MOCHA, SHS, VBE, VBS, SCT, WSC, FDF, XFDF, LSL, LSO, LSS, IQY, RQY, DOS, BAT, PS, EPS, WCH, WCM, WB1, WB3, WCH, WCM, AD. If the entry exists and the "Action" is "Save File" or "Always Ask", this is not a finding. If an extension exists and the entry in the Action column is associated with an application that does/can execute the code, this is a finding. Fix TextRemove any unauthorized extensions from the auto-download list. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-MozillaFirefox_Checks) found this to be NOT A FINDING on 12/17/2025 ResultHash: 51FD6061F9FF59F75E48142A30E35B649C2E6863 ~~~~~ Evaluate-STIG intended to utilize MONT-SW-89108\Scan.Admin, but the user has NOT utilized Firefox on this system. User Profile Evaluated: MONT-SW-89108\dod_admin None of the extensions in question are configured.
Source: MONT-SW-89108_Firefox_V6R6_20251217-203042.ckl
Scan Date: 2026-03-04T15:25:15.868210
Technology Area: Windows Operating System
|
||||||||
| V-251550 | CAT II | MONT-SW-89134 | Mozilla Firefox Security Technical Imple... | Firefox must be configured to not automatically ex... | - | |||
Check TextType "about:preferences" in the browser address bar. Type "Applications" in the Find bar in the upper-right corner. Determine if any of the following file extensions are listed: HTA, JSE, JS, MOCHA, SHS, VBE, VBS, SCT, WSC, FDF, XFDF, LSL, LSO, LSS, IQY, RQY, DOS, BAT, PS, EPS, WCH, WCM, WB1, WB3, WCH, WCM, AD. If the entry exists and the "Action" is "Save File" or "Always Ask", this is not a finding. If an extension exists and the entry in the Action column is associated with an application that does/can execute the code, this is a finding. Fix TextRemove any unauthorized extensions from the auto-download list. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-MozillaFirefox_Checks) found this to be NOT A FINDING on 12/17/2025 Username: MONT-SW-89134\dod_admin UserSID: S-1-5-21-4004422625-1934610219-1178763574-1001 ResultHash: FDD7EC120C3A7E53B1B2F0B1FE803C005523274E ~~~~~ None of the extensions in question are configured.
Source: MONT-SW-89134_Firefox_V6R6_20251217-201244.ckl
Scan Date: 2026-03-04T15:25:41.899130
Technology Area: Windows Operating System
|
||||||||