FFOX-00-000001 – The installed version of Firefox must be supported. Details Using versions of an application that are not supported by the vendor is not permitted. Vendors respond to security...
FFOX-00-000002 – Firefox must be configured to allow only TLS 1.2 or above. Details Use of versions prior to TLS 1.2 are not permitted. SSL 2.0 and SSL 3.0 contain a number of...
FFOX-00-000003 – Firefox must be configured to ask which certificate to present to a website when a certificate is required. Details When a website asks for a certificate for user authentication, Firefox must be configured to have the user choose...
FFOX-00-000004 – Firefox must be configured to not automatically check for updated versions of installed search plugins. Details Updates must be controlled and installed from authorized and trusted servers. This setting overrides a number of other settings...
FFOX-00-000005 – Firefox must be configured to not automatically update installed add-ons and plugins. Details Set this to false to disable checking for updated versions of the Extensions/Themes. Automatic updates from untrusted sites puts...
FFOX-00-000006 – Firefox must be configured to not automatically execute or download MIME types that are not authorized for auto-download. Details Some files can be downloaded or execute without user interaction. This setting ensures these files are not downloaded and...
FFOX-00-000007 – Firefox must be configured to disable form fill assistance. Details To protect privacy and sensitive data, Firefox provides the ability to configure the program so that data entered into...
FFOX-00-000008 – Firefox must be configured to not use a password store with or without a master password. Details Firefox can be set to store passwords for sites visited by the user. These individual passwords are stored in...
FFOX-00-000009 – Firefox must be configured to block pop-up windows. Details Pop-up windows may be used to launch an attack within a new browser window with altered settings. This setting...
FFOX-00-000010 – Firefox must be configured to prevent JavaScript from moving or resizing windows. Details JavaScript can make changes to the browser’s appearance. This activity can help disguise an attack taking place in a...