STIGQter STIGQter: STIG Summary: Microsoft Windows 11 Security Technical Implementation Guide Version: 2 Release: 8 Benchmark Date: 01 Jul 2026:

Windows 11 systems must have Unified Extensible Firmware Interface (UEFI) firmware and be configured to run in UEFI mode, not Legacy BIOS.

DISA Rule

SV-253256r1210280_rule

Vulnerability Number

V-253256

Group Title

SRG-OS-000424-GPOS-00188

Rule Version

WN11-00-000015

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure UEFI firmware to run in UEFI mode, not Legacy BIOS mode.

Check Contents

Verify the system firmware is configured to run in UEFI mode, not Legacy BIOS.

Run "System Information".

Under "System Summary", if "BIOS Mode" does not display "UEFI", this is a finding.

Vulnerability Number

V-253256

Documentable

False

Rule Version

WN11-00-000015

Severity Override Guidance

Verify the system firmware is configured to run in UEFI mode, not Legacy BIOS.

Run "System Information".

Under "System Summary", if "BIOS Mode" does not display "UEFI", this is a finding.

Check Content Reference

M

Target Key

5471