STIGQter STIGQter: STIG Summary: IBM WebSphere Traditional V9.x Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 23 Aug 2018:

The WebSphere Application Server sample applications must be removed.

DISA Rule

SV-95987r1_rule

Vulnerability Number

V-81273

Group Title

SRG-APP-000141-AS-000095

Rule Version

WBSP-AS-000930

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Navigate to Applications >> All Applications.

Click on the corresponding application checkbox.

Select "Remove".

Click "OK".

Click "Save".

Check Contents

Navigate to Applications >> All Applications.

Review all applications installed on the application server.

If the sample applications snoop, ivt, or DefaultApplication are installed on a production system, this is a finding.

Vulnerability Number

V-81273

Documentable

False

Rule Version

WBSP-AS-000930

Severity Override Guidance

Navigate to Applications >> All Applications.

Review all applications installed on the application server.

If the sample applications snoop, ivt, or DefaultApplication are installed on a production system, this is a finding.

Check Content Reference

M

Target Key

3399

Comments