Skip to main content
CUI

LAB BASELINES - Findings

Back to Ship Export CSV Download POA&M
Switch to Flat View
Showing 50 unique vulnerabilities (444 total)
V-218751 CAT II The IIS 10.0 website must generate unique session identifier...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218752 CAT II The IIS 10.0 website document directory must be in a separat...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218753 CAT II The IIS 10.0 website must be configured to limit the maxURL.
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218754 CAT II The IIS 10.0 website must be configured to limit the size of...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218755 CAT II The IIS 10.0 websites Maximum Query String limit must be con...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218756 CAT II Non-ASCII characters in URLs must be prohibited by any IIS 1...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218757 CAT II Double encoded URL requests must be prohibited by any IIS 10...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218758 CAT II Unlisted file extensions in URL requests must be filtered by...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218759 CAT II Directory Browsing on the IIS 10.0 website must be disabled.
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218760 CAT II Warning and error messages displayed to clients must be modi...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218761 CAT II Debugging and trace information used to diagnose the IIS 10....
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218762 CAT II The Idle Time-out monitor for each IIS 10.0 website must be ...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218763 CAT II The IIS 10.0 websites connectionTimeout setting must be expl...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218764 CAT II The IIS 10.0 website must provide the capability to immediat...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218765 CAT II The IIS 10.0 website must use a logging mechanism configured...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218766 CAT II The IIS 10.0 websites must use ports, protocols, and service...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218767 CAT II The IIS 10.0 website must only accept client certificates is...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218769 CAT II IIS 10.0 website session IDs must be sent to the client usin...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218770 CAT II Cookies exchanged between the IIS 10.0 website and the clien...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218771 CAT II The IIS 10.0 website must have a unique application pool.
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218772 CAT II The maximum number of requests an application pool can proce...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218775 CAT II The application pool for each IIS 10.0 website must have a r...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218777 CAT II The application pools rapid fail protection for each IIS 10....
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218778 CAT II The application pools rapid fail protection settings for eac...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218779 CAT II Interactive scripts on the IIS 10.0 web server must be locat...
1 asset Microsoft IIS 10.0 S...
V-218780 CAT II Interactive scripts on the IIS 10.0 web server must have res...
1 asset Microsoft IIS 10.0 S...
V-218781 CAT II Backup interactive scripts on the IIS 10.0 server must be re...
1 asset Microsoft IIS 10.0 S...
V-218782 CAT II The required DoD banner page must be displayed to authentica...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218786 CAT II Both the log file and Event Tracing for Windows (ETW) for th...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218788 CAT II The IIS 10.0 web server must produce log records that contai...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218789 CAT II The IIS 10.0 web server must produce log records containing ...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218790 CAT II The log information from the IIS 10.0 web server must be pro...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218791 CAT II The log data and records from the IIS 10.0 web server must b...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218792 CAT II The IIS 10.0 web server must not perform user management for...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218793 CAT II The IIS 10.0 web server must only contain functions necessar...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218794 CAT II The IIS 10.0 web server must not be both a website server an...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218796 CAT II The accounts created by uninstalled features (i.e., tools, u...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218797 CAT II The IIS 10.0 web server must be reviewed on a regular basis ...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218798 CAT II The IIS 10.0 web server must have Multipurpose Internet Mail...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218799 CAT II The IIS 10.0 web server must have Web Distributed Authoring ...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218801 CAT II Java software installed on a production IIS 10.0 web server ...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218803 CAT II The IIS 10.0 web server must separate the hosted application...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218804 CAT II The IIS 10.0 web server must use cookies to track session st...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218805 CAT II The IIS 10.0 web server must accept only system-generated se...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218806 CAT II The IIS 10.0 web server must augment re-creation to a stable...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218807 CAT II The production IIS 10.0 web server must utilize SHA2 encrypt...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218808 CAT II Directory Browsing on the IIS 10.0 web server must be disabl...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218809 CAT II The IIS 10.0 web server Indexing must only index web content...
1 asset Microsoft IIS 10.0 S...
V-218810 CAT II Warning and error messages displayed to clients must be modi...
1 asset 1 Closed Microsoft IIS 10.0 S...
V-218812 CAT II The IIS 10.0 web server must restrict inbound connections fr...
1 asset Microsoft IIS 10.0 S...
Page 2 of 9
CUI