STIGQter STIGQter: STIG Summary: Network Device Management Security Requirements Guide Version: 5 Release: 5 Benchmark Date: 01 Jul 2026:

The network device must install security-relevant firmware updates within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

DISA Rule

SV-256777r1137881_rule

Vulnerability Number

V-256777

Group Title

SRG-APP-000457

Rule Version

SRG-APP-000457-NDM-000352

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Install security-relevant firmware updates within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

Check Contents

Verify the network device has security-relevant firmware updates installed within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

If the network device does not install security-relevant firmware updates within 30 days unless the time period is directed by an authoritative source, this is a finding.

Vulnerability Number

V-256777

Documentable

False

Rule Version

SRG-APP-000457-NDM-000352

Severity Override Guidance

Verify the network device has security-relevant firmware updates installed within 30 days unless the time period is directed by an authoritative source (e.g., IAVM, CTOs, DTMs, STIGs).

If the network device does not install security-relevant firmware updates within 30 days unless the time period is directed by an authoritative source, this is a finding.

Check Content Reference

M

Target Key

2890