STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to General Application (GAPP) Security Requirements Guide

V-288279

CAT II (Medium)

The application must prevent the automatic execution of mobile code in, at a minimum, office applications, browsers, email clients, mobile code runtime environments, and mobile agent systems.

Rule ID

SV-288279r1252422_rule

STIG

General Application (GAPP) Security Requirements Guide

Version

V1R0.1

CCIs

CCI-001170

Discussion

Mobile code can cause damage to the system. It can execute without explicit action from, or notification to, a user. Preventing automatic execution of mobile code includes, for example, disabling auto execute features on information system components. This requirement applies to mobile code-enabled software that is capable of executing one or more types of mobile code.

Check Content

Review the application documentation and deployed configuration to determine whether the application prevents the automatic execution of mobile code in, at a minimum, office applications, browsers, email clients, mobile code runtime environments, and mobile agent systems.

If the application does not prevent the automatic execution of mobile code in, at a minimum, office applications, browsers, email clients, mobile code runtime environments, and mobile agent systems, this is a finding.

Fix Text

Configure the application to prevent the automatic execution of mobile code in, at a minimum, office applications, browsers, email clients, mobile code runtime environments, and mobile agent systems.