SV-204784r508029_rule
V-204784
SRG-APP-000340
SRG-APP-000340-AS-000185
CAT II
10
Configure the application server to deny non-privileged users access to and execution of privileged functions.
Review application server documentation and configuration to verify that non-privileged users cannot access or execute privileged functions.
Have a user logon as a non-privileged user and attempt to execute privileged functions.
If the user is capable of executing privileged functions, this is a finding.
V-204784
False
SRG-APP-000340-AS-000185
Review application server documentation and configuration to verify that non-privileged users cannot access or execute privileged functions.
Have a user logon as a non-privileged user and attempt to execute privileged functions.
If the user is capable of executing privileged functions, this is a finding.
M
2900