1. Home
  2. Security Hardening
  3. DISA STIG Adobe Acrobat Pro DC Continuous Track V2R1
  4. AADC-CN-000290 – Adobe Acrobat Pro DC Continuous must be configured to block Flash Content.

AADC-CN-000290 – Adobe Acrobat Pro DC Continuous must be configured to block Flash Content.

Details

Flash has a long history of vulnerabilities. Although Flash is no longer provided with Acrobat, if the system has Flash installed, a malicious PDF could execute code on the system. Configuring Flash to run from a privileged location limits the execution capability of untrusted Flash content that may be embedded in the PDF.

Solution

Configure the following registry value:

Registry Hive:
HKEY_LOCAL_MACHINE
Registry Path:
SoftwarePoliciesAdobeAdobe AcrobatDCFeatureLockDown

Value Name: bEnableFlash
Type: REG_DWORD
Value: 0

Configure the policy value for Computer Configuration > Administrative Templates > Adobe Acrobat Pro DC Continuous > Preferences > ‘Enable Flash’ to ‘Disabled’.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles