STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to General Application (GAPP) Security Requirements Guide

V-288275

CAT II (Medium)

The application must prompt the user for action prior to executing mobile code.

Rule ID

SV-288275r1252410_rule

STIG

General Application (GAPP) Security Requirements Guide

Version

V1R0.1

CCIs

CCI-002460

Discussion

Mobile code can cause damage to the system. It can execute without explicit action from, or notification to, a user. Actions enforced before executing mobile code include, for example, prompting users prior to opening email attachments and disabling automatic execution. This requirement applies to mobile code-enabled software, which is capable of executing one or more types of mobile code.

Check Content

Review the application documentation and deployed configuration to determine whether the application prompts the user for action prior to executing mobile code.

If the application does not prompt the user for action prior to executing mobile code, this is a finding.

Fix Text

Configure the application to prompt the user for action prior to executing mobile code.