STIGQter STIGQter: STIG Summary: VMware vSphere 7.0 Virtual Machine Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 30 Jan 2025:

Unauthorized CD/DVD devices must be disconnected on the virtual machine (VM).

DISA Rule

SV-256458r959010_rule

Vulnerability Number

V-256458

Group Title

SRG-OS-000480-VMM-002000

Rule Version

VMCH-70-000009

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

From the vSphere Client, right-click the Virtual Machine and go to "Edit Settings".

Select the CD/DVD drive and uncheck "Connected" and "Connect at power on" and remove any attached ISOs.

or

From a PowerCLI command prompt while connected to the ESXi host or vCenter server, run the following command:

Get-VM "VM Name" | Get-CDDrive | Set-CDDrive -NoMedia

Check Contents

From the vSphere Client, right-click the Virtual Machine and go to "Edit Settings".

Review the VM's hardware and verify no CD/DVD drives are connected.

or

From a PowerCLI command prompt while connected to the ESXi host or vCenter server, run the following command:

Get-VM | Get-CDDrive | Where {$_.extensiondata.connectable.connected -eq $true} | Select Parent,Name

If a virtual machine has a CD/DVD drive connected other than temporarily, this is a finding.

Vulnerability Number

V-256458

Documentable

False

Rule Version

VMCH-70-000009

Severity Override Guidance

From the vSphere Client, right-click the Virtual Machine and go to "Edit Settings".

Review the VM's hardware and verify no CD/DVD drives are connected.

or

From a PowerCLI command prompt while connected to the ESXi host or vCenter server, run the following command:

Get-VM | Get-CDDrive | Where {$_.extensiondata.connectable.connected -eq $true} | Select Parent,Name

If a virtual machine has a CD/DVD drive connected other than temporarily, this is a finding.

Check Content Reference

M

Target Key

5519