STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to General Application (GAPP) Security Requirements Guide

V-288295

CAT I (High)

The application must be a version supported by the vendor.

Rule ID

SV-288295r1252470_rule

STIG

General Application (GAPP) Security Requirements Guide

Version

V1R0.1

CCIs

CCI-003376

Discussion

Unsupported software and systems must not be used because fixes to newly identified bugs will not be implemented by the vendor. The lack of support can result in potential vulnerabilities. Software and systems at unsupported servicing levels or releases will not receive security updates for new vulnerabilities, which leaves them subject to exploitation. When maintenance updates and patches are no longer available, software is no longer considered supported and must be upgraded or decommissioned.

Check Content

Review the application documentation and deployed configuration to determine whether the version the application running on the system is supported by the vendor.

If the version of the application running on the system is not supported by the vendor, this is a finding.

Fix Text

Upgrade to a supported version of the application.