STIGQter STIGQter: STIG Summary: HYCU Protege Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

The HYCU virtual appliance must not have any default manufacturer passwords when deployed.

DISA Rule

SV-268217r1067634_rule

Vulnerability Number

V-268217

Group Title

SRG-APP-000845-NDM-000220

Rule Version

HYCU-ND-000600

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Log in to the HYCU VM console with the default username and password.

Run the passwd command to change the default password.

Log in to the HYCU Web UI with the default password and change the password by selecting the "Admin" account in the upper-right corner and changing the password. This logs off the admin account and prompts the user to log in with the updated credentials.

Check Contents

Log in to the HYCU VM console with the default vendor credentials.

If the login to the console is successful with the default credentials, this is a finding.

Log in to the HYCU Web UI with the default vendor credentials.

If the login to the HYCU Web UI is successful with the default credentials, this is a finding.

Vulnerability Number

V-268217

Documentable

False

Rule Version

HYCU-ND-000600

Severity Override Guidance

Log in to the HYCU VM console with the default vendor credentials.

If the login to the console is successful with the default credentials, this is a finding.

Log in to the HYCU Web UI with the default vendor credentials.

If the login to the HYCU Web UI is successful with the default credentials, this is a finding.

Check Content Reference

M

Target Key

5660