Join the Reckless Community* indicates requiredEmail Address *First Name *Last Name *
Back to Microsoft Word 2010 Security Technical Implementation Guide
Severity: Medium
<VulnDiscussion>Tracked changes or comments embedded within a document may contain sensitive, insulting, or embarrassing information that the document owner forgot, or that a contributor may have placed.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
The policy value for User Configuration -> Administrative Templates -> Microsoft Word 2010 -> Word Options -> Security "Warn before printing, saving or sending a file that contains tracked changes or comments" must be set to "Enabled". Procedure: Use the Windows Registry Editor to navigate to the following key: HKCU\Software\Policies\Microsoft\Office\14.0\word\options\vpref Criteria: If the value fWarnRevisions_1125_1 is REG_DWORD = 1 this is not a finding.
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Word 2010 -> Word Options -> Security "Warn before printing, saving or sending a file that contains tracked changes or comments" to "Enabled".