STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 2 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← Back to Mainframe Product Security Requirements Guide

V-205516

CAT II (Medium)

The Mainframe Product must prevent the automatic execution of mobile code in, at a minimum, office applications, browsers, email clients, mobile code run-time environments, and mobile agent systems.

Rule ID

SV-205516r961092_rule

STIG

Mainframe Product Security Requirements Guide

Version

V3R4

CCIs

CCI-001170

Discussion

Mobile code can cause damage to the system. It can execute without explicit action from, or notification to, a user. Preventing automatic execution of mobile code includes, for example, disabling auto execute features on information system components. This requirement applies to mobile code-enabled software, which is capable of executing one or more types of mobile code.

Check Content

If the Mainframe Product has no function or capability for mobile code use, this is not applicable.

Examine installation and configuration settings.

If the Mainframe Product is not configured to prevent the automatic execution of mobile code in all applications, this is a finding.

Fix Text

Configure the Mainframe Product to prevent the automatic execution of mobile code in all applications.