STIGQter STIGQter: STIG Summary: Application Server Security Requirements Guide Version: 3 Release: 1 Benchmark Date: 23 Oct 2020:

The application server must check the validity of all data inputs to the management interface, except those specifically identified by the organization.

DISA Rule

SV-204772r508029_rule

Vulnerability Number

V-204772

Group Title

SRG-APP-000251

Rule Version

SRG-APP-000251-AS-000165

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the application server to check the validity of data inputs into the management interface except those specifically identified by the organization.

Check Contents

Review the application server configuration to determine if the system checks the validity of information inputs to the management interface, except those specifically identified by the organization.

If the management interface data inputs are not validated, this is a finding.

Vulnerability Number

V-204772

Documentable

False

Rule Version

SRG-APP-000251-AS-000165

Severity Override Guidance

Review the application server configuration to determine if the system checks the validity of information inputs to the management interface, except those specifically identified by the organization.

If the management interface data inputs are not validated, this is a finding.

Check Content Reference

M

Target Key

2900

Comments