1. Home
  2. Security Hardening
  3. DISA STIG Microsoft Internet Explorer 9 V1R15
  4. DTBI114 – The Initialize and script ActiveX controls not marked as safe property must be disallowed (Restricted Site zone).

DTBI114 – The Initialize and script ActiveX controls not marked as safe property must be disallowed (Restricted Site zone).

Details

ActiveX controls not marked safe for scripting should not be executed. Although this is not a complete security measure for a control to be marked safe for scripting, if a control is not marked safe, it should not be initialized and executed.

Solution

Set the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Internet Explorer -> Internet Control Panel -> Security Page -> Restricted Sites Zone -> ‘Initialize and script ActiveX controls not marked as safe’ to ‘Enabled’ and select ‘Disable’ from the drop-down box.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: System and Communications Protection.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles