Vulnerabilities Checklists Product Dictionary Impact Metrics Data Feeds Statistics
Home ISAP/SCAP SCAP Validated Tools SCAP Events About Contact Vendor Comments
Mission and Overview
NVD is the U.S. government repository of standards based vulnerability management data. This data enables automation of vulnerability management, security measurement, and compliance (e.g. FISMA).
Resource Status

NVD contains:

33023 CVE Vulnerabilities
130Checklists
151 US-CERT Alerts
2270 US-CERT Vuln Notes
2097OVAL Queries

Last updated:  10/07/08

CVE Publication rate:

15 vulnerabilities / day
Email List

NVD provides four mailing lists to the public. For information and subscription instructions please visit NVD Mailing Lists

Workload Index
Vulnerability Workload Index: 9.57
About Us

NVD is a product of the NIST Computer Security Division and is sponsored by the Department of Homeland Security’s National Cyber Security Division. It supports the U.S. government multi-agency (OSD, DHS, NSA, DISA, and NIST) Information Security Automation Program. It is the U.S. government content repository for the Security Content Automation Protocol (SCAP).

National Checklist Program
Checklist Summary #88: Prose Guide - Windows Vista Security Guide

Prose Guide - Windows Vista Security Guide
Checklist Item Version
Number
1.0
Status Final
Creation Date 10/31/2007
Original Publication Date November 8th, 2006
Revision Date 07/17/2008
Product Category Operating System
Vendor (s) microsoft
Product (s) microsoft windows_vista
Product Version (s) microsoft windows_vista
CPE Name (s) cpe:/o:microsoft:windows_vista
Product Role Desktop Client
SCAP Checklist? Yes
SCAP zip file URL Not Available
Checklist Summary This document is a security guidance document for the Microsoft Windows Vista operating system for workstations. It reflects the content of the Consensus Baseline Security Settings document developed by the National Security Agency (NSA), the Defense Information Systems Agency (DISA), and The National Institute of Standards and Technology (NIST).
Known Issues None
Target Audience
Target Operational
Environment
Enterprise
Checklist Installation Tool Tools capable of processing the Security Content Automation Program (SCAP), content are capable of assessing and installing this checklist. Please visit http://nvd.nist.gov/scap.cfm for more information.
Rollback Capability
Testing Information
NIAP/CMVP Status
Regulatory Compliance Via the content provided at the SCAP website, the configuration checks have been mapped to the NIST SP 800-53 technical controls, DoD IA Controls, ISO 17799, and DCID.
Comments, Warnings,
Disclaimer, Miscellaneous
See known issues.
Disclaimer Information in this document, including URL and other Internet Web site references, is subject to change without notice. Unless otherwise noted, the example companies, organizations, products, domain names, e - mail addresses, logos, people, places and events depicted herein are fictitious, and no association with any real company, organization, product, domain name, e - mail address, logo, person, place or event is intended or should be inferred.
Product Support
Submitting
Organization/Authors
Microsoft Corporation
Submitting
Organization Type
Software Vendors
Checklist Authority
Point of Contact
Sponsor
Licensing Commercial use license
Checklist Homepage Prose Guide - Windows Vista Security Guide Homepage
Download Package Prose Guide - Windows Vista Security Guide Download Package
Integrity

Please see vendor and scap content hosting websites for checksums on downloadable content

Change History None
Dependency / Requirement
References Microsoft Corporation -
http://www.microsoft.com/technet/windowsvista/
security/guide.mspx

DISA/NSA/NIST Security Content Autotmation Program (SCAP): http://nvd.nist.gov/scap/content.cfm
NIST Identifier 1112
Email checklists@nist.gov for questions concerning this checklist or the NIST National Checklist Program