Vulnerabilities


Description
Validator for vulnerabilities used in MONARC
Provided by


Objects validated by the schema
id Name Organization Visibility Last updated Edit Definition Object Delete
53 The relays identify neither the sources nor the destinations (example of impact: system vulnerable to spoofing attacks) MONARC Public Apr 12, 2019, 1:54:49 PM
54 Incorrect sizing (e.g. too much data for the maximum passband) MONARC Public Apr 12, 2019, 1:54:49 PM
55 Circulating information in clear text MONARC Public Apr 12, 2019, 1:54:49 PM
44 No screen locker/locking functionality is active MONARC Public Apr 12, 2019, 1:54:49 PM
45 Possibility of installing correction programmes, updates, patches, hotfixes, etc. MONARC Public Apr 12, 2019, 1:54:49 PM
46 The principle of least privilege is not applied MONARC Public Apr 12, 2019, 1:54:49 PM
47 Presence of protocol that has no authentication function MONARC Public Apr 12, 2019, 1:54:49 PM
48 The interfaces can be accessed by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
49 The protocol does not allow certain identification of the sender MONARC Public Apr 12, 2019, 1:54:49 PM
50 Possibility of remote system administration MONARC Public Apr 12, 2019, 1:54:49 PM
51 The protocol does not allow acknowledgement of receipt to be sent MONARC Public Apr 12, 2019, 1:54:49 PM
52 No filtering and logging on communication relays between networks MONARC Public Apr 12, 2019, 1:54:49 PM
56 The system is connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
57 Use of a standard operating system on which logical attacks have already been carried out MONARC Public Apr 12, 2019, 1:54:49 PM
58 Use of an obsolete version of the messaging server MONARC Public Apr 12, 2019, 1:54:49 PM
59 Use of an obsolete system MONARC Public Apr 12, 2019, 1:54:49 PM
60 Use of a non-standard system MONARC Public Apr 12, 2019, 1:54:49 PM
65 No access rules MONARC Public Apr 12, 2019, 1:54:49 PM
70 The access system allows software storage MONARC Public Apr 12, 2019, 1:54:49 PM
75 The access system does not log tracks of its operation MONARC Public Apr 12, 2019, 1:54:49 PM
80 The system does not allow the author of a modification to be identified MONARC Public Apr 12, 2019, 1:54:49 PM
85 Possibility of subjecting the system to an unlimited number of requests MONARC Public Apr 12, 2019, 1:54:49 PM
93 No management of access authorisation MONARC Public Apr 12, 2019, 1:54:49 PM
98 No filtering system MONARC Public Apr 12, 2019, 1:54:49 PM
103 The system allows asynchronous operation of certain parts or commands of the operating system (e.g. JavaScript components exploring the hard disc content) MONARC Public Apr 12, 2019, 1:54:49 PM
108 Possibility of eavesdropping on exchanges with authentication servers MONARC Public Apr 12, 2019, 1:54:49 PM
111 The system allows information to be stored or modified without authentication of the authors MONARC Public Apr 12, 2019, 1:54:49 PM
116 Possibility of introducing eavesdropping software on client terminals MONARC Public Apr 12, 2019, 1:54:49 PM
121 The system can be used by all personnel MONARC Public Apr 12, 2019, 1:54:49 PM
126 The system allows relaying MONARC Public Apr 12, 2019, 1:54:49 PM
132 The system allows asynchronous operation of certain parts or commands of the operating system to be exploited (e.g. automatic opening of attachments) MONARC Public Apr 12, 2019, 1:54:49 PM
144 Use of an obsolete version of the messaging server MONARC Public Apr 12, 2019, 1:54:49 PM
147 The system makes it easy to disclose information to the outside MONARC Public Apr 12, 2019, 1:54:49 PM
150 Public access to the gateway MONARC Public Apr 12, 2019, 1:54:49 PM
155 Users are not made aware of information security MONARC Public Apr 12, 2019, 1:54:49 PM
160 No recovery plan MONARC Public Apr 12, 2019, 1:54:49 PM
166 The operating system is not checked before installation MONARC Public Apr 12, 2019, 1:54:49 PM
169 Use of an unsecured method of communication MONARC Public Apr 12, 2019, 1:54:49 PM
174 Lack of a system hardening policy MONARC Public Apr 12, 2019, 1:54:49 PM
61 No monitoring of installation and maintenance procedures (configuration and parameter setting records) MONARC Public Apr 12, 2019, 1:54:49 PM
66 The system is connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
71 The access system allows software downloads MONARC Public Apr 12, 2019, 1:54:49 PM
76 Access to the tracking system is not protected MONARC Public Apr 12, 2019, 1:54:49 PM
81 Applications can be modified or changed MONARC Public Apr 12, 2019, 1:54:49 PM
86 Existence of periods or events that cause a very significant increase in use of the system MONARC Public Apr 12, 2019, 1:54:49 PM
95 No diagnostic function to prevent equipment failures MONARC Public Apr 12, 2019, 1:54:49 PM
100 The system does has no means of preserving the activity history MONARC Public Apr 12, 2019, 1:54:49 PM
105 The system allows remote deleting, modifying or installing of programmes MONARC Public Apr 12, 2019, 1:54:49 PM
114 No management of write rights in shared storage spaces. MONARC Public Apr 12, 2019, 1:54:49 PM
119 Use of an obsolete version of the operating system or applications MONARC Public Apr 12, 2019, 1:54:49 PM
124 The system allows information to be sent and received without authentication of the senders or recipients MONARC Public Apr 12, 2019, 1:54:49 PM
133 The messaging system allows software updates to be installed (e.g. patches, anti-virus updates, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
135 Use of the internal distribution list accessible to everyone MONARC Public Apr 12, 2019, 1:54:49 PM
138 Proprietary operating system distributions can be easily copied MONARC Public Apr 12, 2019, 1:54:49 PM
141 Software incompatibility (e.g. side effect of message-filtering anti-virus software, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
146 Tempting or popular operating system MONARC Public Apr 12, 2019, 1:54:49 PM
149 Pirated programmes can be installed MONARC Public Apr 12, 2019, 1:54:49 PM
154 The software allows access to data (content of hard disc, data base, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
159 No SLAs with third parties (internal or external) MONARC Public Apr 12, 2019, 1:54:49 PM
164 Update management (patches) is flawed MONARC Public Apr 12, 2019, 1:54:49 PM
173 Possible existence of hidden functions introduced during the design and development phase MONARC Public Apr 12, 2019, 1:54:49 PM
351 No disciplinary procedures MONARC Public Apr 12, 2019, 1:54:49 PM
62 No internal support tool MONARC Public Apr 12, 2019, 1:54:49 PM
67 Possibility of remote system administration from any station MONARC Public Apr 12, 2019, 1:54:49 PM
72 No protection measures (read only, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
77 The system can be accessed by everyone (e.g. does not authenticate client stations or users) MONARC Public Apr 12, 2019, 1:54:49 PM
82 Programmes or system files can be deleted or modified MONARC Public Apr 12, 2019, 1:54:49 PM
87 Possibility of the system being subjected to badly formed requests and data (e.g. buffer overflow, denial of service on LDAP server) MONARC Public Apr 12, 2019, 1:54:49 PM
94 The system makes it easy to disclose information to the outside MONARC Public Apr 12, 2019, 1:54:49 PM
99 The system allows access to data that cannot be authenticated (e.g. hoax) MONARC Public Apr 12, 2019, 1:54:49 PM
104 Incorrect sizing of resources (e.g. too many users for the number of connections possible and the passband) MONARC Public Apr 12, 2019, 1:54:49 PM
109 Possibility of eavesdropping on exchanges with application servers MONARC Public Apr 12, 2019, 1:54:49 PM
115 Incorrect sizing of resources (e.g. not enough storage or file share space) MONARC Public Apr 12, 2019, 1:54:49 PM
120 No measure to avoid negligence when information is sent MONARC Public Apr 12, 2019, 1:54:49 PM
125 The system has no filter to prevent hoaxes being received from the outside MONARC Public Apr 12, 2019, 1:54:49 PM
129 Resource sharing makes it easy for unauthorised persons to use the system MONARC Public Apr 12, 2019, 1:54:49 PM
134 No anti-virus filtering system MONARC Public Apr 12, 2019, 1:54:49 PM
139 No limits on the size of attachments MONARC Public Apr 12, 2019, 1:54:49 PM
143 The messaging system can be accessed from Internet MONARC Public Apr 12, 2019, 1:54:49 PM
151 Incorrect sizing of resources (e.g. too many simultaneous connections) MONARC Public Apr 12, 2019, 1:54:49 PM
156 Authorisation management is flawed MONARC Public Apr 12, 2019, 1:54:49 PM
161 Backups are not carried out in accordance with the state of the art MONARC Public Apr 12, 2019, 1:54:49 PM
168 Persons without a service reason can gain access MONARC Public Apr 12, 2019, 1:54:49 PM
352 High political / economic stakes MONARC Public Apr 12, 2019, 1:54:49 PM
63 The equipment can be used for purposes other than those intended MONARC Public Apr 12, 2019, 1:54:49 PM
68 The system can be accessed by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
73 No supervision tool MONARC Public Apr 12, 2019, 1:54:49 PM
78 No control of access to information stored in the directory MONARC Public Apr 12, 2019, 1:54:49 PM
83 Incorrect sizing of resources (e.g. too many users for the maximum capacity of the directory) MONARC Public Apr 12, 2019, 1:54:49 PM
88 Failure to comply with installation or maintenance procedures. MONARC Public Apr 12, 2019, 1:54:49 PM
92 No audit or supervision of accesses MONARC Public Apr 12, 2019, 1:54:49 PM
97 No access logging MONARC Public Apr 12, 2019, 1:54:49 PM
102 No anti-virus check on exchanges MONARC Public Apr 12, 2019, 1:54:49 PM
107 No partitioning of communication networks MONARC Public Apr 12, 2019, 1:54:49 PM
113 Use of shared storage space MONARC Public Apr 12, 2019, 1:54:49 PM
118 Flaws in the management of access privileges to messaging gateways MONARC Public Apr 12, 2019, 1:54:49 PM
123 No effective and operational virus shield MONARC Public Apr 12, 2019, 1:54:49 PM
128 The remote maintenance link is permanently activated MONARC Public Apr 12, 2019, 1:54:49 PM
130 The messaging system allows automatic message transmission MONARC Public Apr 12, 2019, 1:54:49 PM
136 Incorrect sizing of storage spaces for received messages MONARC Public Apr 12, 2019, 1:54:49 PM
140 Incorrect use of the messaging service (mailboxes used as storage space) MONARC Public Apr 12, 2019, 1:54:49 PM
145 No management of information access privileges (possibility of corrupting public data, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
148 The system does not allow the person issuing a request to be identified MONARC Public Apr 12, 2019, 1:54:49 PM
153 Single copy of paper documents (originals) MONARC Public Apr 12, 2019, 1:54:49 PM
158 The need-to-know principle is not respected MONARC Public Apr 12, 2019, 1:54:49 PM
163 Tools or programs are not adapted for use or are not ergonomic MONARC Public Apr 12, 2019, 1:54:49 PM
167 Flaws in the physical access boundaries MONARC Public Apr 12, 2019, 1:54:49 PM
64 No audit or supervision of accesses (for example inventory of accesses outside the organisation and types of data flow) MONARC Public Apr 12, 2019, 1:54:49 PM
69 The origin of applications is not checked before installation MONARC Public Apr 12, 2019, 1:54:49 PM
74 Possibility of deleting, modifying or installing new programmes MONARC Public Apr 12, 2019, 1:54:49 PM
79 Possibility of usurping the directory function MONARC Public Apr 12, 2019, 1:54:49 PM
84 The SNMP layer is activated MONARC Public Apr 12, 2019, 1:54:49 PM
89 No back-up procedure MONARC Public Apr 12, 2019, 1:54:49 PM
90 No identification of the system protection levels MONARC Public Apr 12, 2019, 1:54:49 PM
91 No content monitoring MONARC Public Apr 12, 2019, 1:54:49 PM
96 Possibility of the operating system being subjected to badly formed requests and data (e.g. buffer overflow) MONARC Public Apr 12, 2019, 1:54:49 PM
101 No awareness programme concerning risks incurred through downloading software MONARC Public Apr 12, 2019, 1:54:49 PM
106 The system allows hostile software such as Trojan horses, viruses, worms, logic bombs, etc. to be introduced MONARC Public Apr 12, 2019, 1:54:49 PM
110 Access privileges to shared information difficult to manage or not managed at all (definition, implementation, monitoring) MONARC Public Apr 12, 2019, 1:54:49 PM
112 Presence of a device allowing remote modification or installation of applications MONARC Public Apr 12, 2019, 1:54:49 PM
117 Possibility of installing an eavesdropping device on messaging gateways MONARC Public Apr 12, 2019, 1:54:49 PM
122 The system allows attachments to be exchanged MONARC Public Apr 12, 2019, 1:54:49 PM
127 Use of a distribution list that includes a large part of the personnel MONARC Public Apr 12, 2019, 1:54:49 PM
131 No awareness programme concerning the risks incurred by opening attachments MONARC Public Apr 12, 2019, 1:54:49 PM
137 No protection against spam MONARC Public Apr 12, 2019, 1:54:49 PM
142 Possibility of the system being subjected to badly formed requests and data (e.g. buffer overflow, denial of service on SMTP, POP3, IMAP server) MONARC Public Apr 12, 2019, 1:54:49 PM
152 Possibility of the systems operating with illegally copied or counterfeit operating systems MONARC Public Apr 12, 2019, 1:54:49 PM
157 User authentication is not ensured MONARC Public Apr 12, 2019, 1:54:49 PM
162 Programs can be downloaded and installed without monitoring MONARC Public Apr 12, 2019, 1:54:49 PM
165 Premises are not secure or could be compromised by external elements MONARC Public Apr 12, 2019, 1:54:49 PM
171 Backup media are not stored in a suitable place MONARC Public Apr 12, 2019, 1:54:49 PM
176 Problems in change management or software maintenance MONARC Public Apr 12, 2019, 1:54:49 PM
181 Security requirements are not identified MONARC Public Apr 12, 2019, 1:54:49 PM
186 The supplier does not manage remote maintenance properly MONARC Public Apr 12, 2019, 1:54:49 PM
191 No accessible support MONARC Public Apr 12, 2019, 1:54:49 PM
196 The operating system logs can be modified by anyone MONARC Public Apr 12, 2019, 1:54:49 PM
201 The operating system allows a session to be opened without password MONARC Public Apr 12, 2019, 1:54:49 PM
170 The user workstation is not monitored MONARC Public Apr 12, 2019, 1:54:49 PM
175 Flaws in the management or use of accounts with privileges MONARC Public Apr 12, 2019, 1:54:49 PM
180 Production data are used for tests or development MONARC Public Apr 12, 2019, 1:54:49 PM
185 User rights allow information to be exported MONARC Public Apr 12, 2019, 1:54:49 PM
190 Insufficient competency MONARC Public Apr 12, 2019, 1:54:49 PM
195 Possibility of the operating system being subjected to badly formed requests and data (e.g. buffer overflow) MONARC Public Apr 12, 2019, 1:54:49 PM
200 Unnecessary use of resources MONARC Public Apr 12, 2019, 1:54:49 PM
205 No qualification of developments in a context representative of operation MONARC Public Apr 12, 2019, 1:54:49 PM
172 Disposal is not carried out properly MONARC Public Apr 12, 2019, 1:54:49 PM
177 Physical access authorisations are not checked regularly MONARC Public Apr 12, 2019, 1:54:49 PM
182 No separation of development and operating environments MONARC Public Apr 12, 2019, 1:54:49 PM
187 Default authentication IDs and passwords are not changed after system installation MONARC Public Apr 12, 2019, 1:54:49 PM
192 Assignment files too complex or unpractical MONARC Public Apr 12, 2019, 1:54:49 PM
197 The operating system can be accessed and used by everyone (e.g. connection via the guest account) MONARC Public Apr 12, 2019, 1:54:49 PM
202 The passwords entered for access to the operating system are decipherable MONARC Public Apr 12, 2019, 1:54:49 PM
178 Logical access authorisations are not checked regularly MONARC Public Apr 12, 2019, 1:54:49 PM
183 Possibility of booting several operating systems on the same machine (e.g. access to NTFS partitions via Linux) MONARC Public Apr 12, 2019, 1:54:49 PM
188 No coordination between the departments concerned before hiring staff and when contracts are modified MONARC Public Apr 12, 2019, 1:54:49 PM
193 No filter to protect the system against saturation MONARC Public Apr 12, 2019, 1:54:49 PM
198 The operating system does not log system records or events MONARC Public Apr 12, 2019, 1:54:49 PM
203 Application requiring computing resources not matched by the equipment (e.g. insufficient RAM) MONARC Public Apr 12, 2019, 1:54:49 PM
179 No supervision of third-party access (supplier, cleaner, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
184 No protection of confidential authentication information MONARC Public Apr 12, 2019, 1:54:49 PM
189 Non-intuitive software MONARC Public Apr 12, 2019, 1:54:49 PM
194 The password base of the operating system is decipherable MONARC Public Apr 12, 2019, 1:54:49 PM
199 The operating system can be used to make anonymous connections MONARC Public Apr 12, 2019, 1:54:49 PM
204 Requirements defined for a project without taking into account special situations that put the system under limit conditions. MONARC Public Apr 12, 2019, 1:54:49 PM
206 Possible side effects after updating a software component MONARC Public Apr 12, 2019, 1:54:49 PM
207 Password for accessing support software changed rarely or not at all MONARC Public Apr 12, 2019, 1:54:49 PM
208 Software that is complex to use MONARC Public Apr 12, 2019, 1:54:49 PM
209 Installation rules not taken into account MONARC Public Apr 12, 2019, 1:54:49 PM
210 No storage of processing tracks MONARC Public Apr 12, 2019, 1:54:49 PM
211 Equipment zoning not taken into account MONARC Public Apr 12, 2019, 1:54:49 PM
212 Equipment capable of emitting compromising stray radiation MONARC Public Apr 12, 2019, 1:54:49 PM
213 No protection against electrical disturbances MONARC Public Apr 12, 2019, 1:54:49 PM
214 Incorrect operating conditions MONARC Public Apr 12, 2019, 1:54:49 PM
215 Incorrect sizing of resources (e.g. insufficient reserve time on a laptop battery). MONARC Public Apr 12, 2019, 1:54:49 PM
216 Equipment that is complex to use or not user-friendly MONARC Public Apr 12, 2019, 1:54:49 PM
217 No substitution equipment MONARC Public Apr 12, 2019, 1:54:49 PM
218 Use of easily-observed passwords to access the system or application (shape on keyboard, short password) MONARC Public Apr 12, 2019, 1:54:49 PM
219 Lack of training in maintaining and operating new equipment MONARC Public Apr 12, 2019, 1:54:49 PM
220 Equipment using flammable materials (e.g. bulk printers producing dust) MONARC Public Apr 12, 2019, 1:54:49 PM
221 Fragility of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
222 Equipment accessible to unauthorized persons MONARC Public Apr 12, 2019, 1:54:49 PM
223 Equipment sensitive to electrical disturbances (voltage drops, overvoltages, transient power-cuts) MONARC Public Apr 12, 2019, 1:54:49 PM
228 No equipment inventory MONARC Public Apr 12, 2019, 1:54:49 PM
233 Poor equipment reliability MONARC Public Apr 12, 2019, 1:54:49 PM
238 Non-upgradable hardware MONARC Public Apr 12, 2019, 1:54:49 PM
243 Possibility of some equipment being harmful to users (working in front of a screen, emanations, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
248 Screen observable from outside MONARC Public Apr 12, 2019, 1:54:49 PM
253 Equipment that can be resold (no marking, used without password) MONARC Public Apr 12, 2019, 1:54:49 PM
258 No robust access control system MONARC Public Apr 12, 2019, 1:54:49 PM
263 Presence of shared directory for storing information MONARC Public Apr 12, 2019, 1:54:49 PM
268 Printer present in passage way MONARC Public Apr 12, 2019, 1:54:49 PM
275 Fragility of media MONARC Public Apr 12, 2019, 1:54:49 PM
280 Media storage not protected MONARC Public Apr 12, 2019, 1:54:49 PM
285 Easily transported or removable media (e.g. floppy disc, ZIP disc, removable hard disc) MONARC Public Apr 12, 2019, 1:54:49 PM
290 No inventory of media used MONARC Public Apr 12, 2019, 1:54:49 PM
295 Poor storage conditions MONARC Public Apr 12, 2019, 1:54:49 PM
300 Password for accessing the system or application changed rarely or not at all MONARC Public Apr 12, 2019, 1:54:49 PM
305 Original media MONARC Public Apr 12, 2019, 1:54:49 PM
310 No procedure for access to classified information MONARC Public Apr 12, 2019, 1:54:49 PM
317 Wireless network connections are poorly managed MONARC Public Apr 12, 2019, 1:54:49 PM
322 No storage of processing and modification tracks MONARC Public Apr 12, 2019, 1:54:49 PM
327 No information protection policy applicable to recycling and discarding MONARC Public Apr 12, 2019, 1:54:49 PM
332 Procedures for managing and applying authorisation too heavy to use MONARC Public Apr 12, 2019, 1:54:49 PM
337 Responsibilities for information systems security not dealt with in the internal regulations MONARC Public Apr 12, 2019, 1:54:49 PM
342 No information protection policy imposed at the organisation's sites MONARC Public Apr 12, 2019, 1:54:49 PM
347 No management of licences or registration and activation measures MONARC Public Apr 12, 2019, 1:54:49 PM
224 Equipment or software maintained remotely via telecommunication equipment MONARC Public Apr 12, 2019, 1:54:49 PM
229 Tempting equipment (trading value, technology, strategic) MONARC Public Apr 12, 2019, 1:54:49 PM
234 Ageing of the equipment MONARC Public Apr 12, 2019, 1:54:49 PM
239 Obsolete hardware MONARC Public Apr 12, 2019, 1:54:49 PM
244 No physical protection MONARC Public Apr 12, 2019, 1:54:49 PM
249 No protection of equipment against theft (anti-theft cable) MONARC Public Apr 12, 2019, 1:54:49 PM
254 Presence of residual data unknown to the user of reallocated or discarded equipment MONARC Public Apr 12, 2019, 1:54:49 PM
259 Possibility of incorrect configuration, installation or modification of the operating system MONARC Public Apr 12, 2019, 1:54:49 PM
264 Equipment allowing data to be recorded on media (floppy disc, ZIP disc, CD/DVD writer) MONARC Public Apr 12, 2019, 1:54:49 PM
269 Wear of media MONARC Public Apr 12, 2019, 1:54:49 PM
273 Medium accessible to persons other than its owners MONARC Public Apr 12, 2019, 1:54:49 PM
278 Media available to everyone MONARC Public Apr 12, 2019, 1:54:49 PM
283 No means of identifying the sensitivity of information contained on the media MONARC Public Apr 12, 2019, 1:54:49 PM
288 No back-up of data contained on the media MONARC Public Apr 12, 2019, 1:54:49 PM
293 No means of checking the safety of media when they enter the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
298 Obsolete medium MONARC Public Apr 12, 2019, 1:54:49 PM
303 Media are complex to use or not user-friendly MONARC Public Apr 12, 2019, 1:54:49 PM
308 No code review or intrusion tests MONARC Public Apr 12, 2019, 1:54:49 PM
313 No site inspection by emergency services (fire-fighting services) MONARC Public Apr 12, 2019, 1:54:49 PM
315 Documentation not up to date MONARC Public Apr 12, 2019, 1:54:49 PM
320 No security policy for protecting the information processing infrastructure in the organisation's sites MONARC Public Apr 12, 2019, 1:54:49 PM
325 No monitoring of sensitive assets MONARC Public Apr 12, 2019, 1:54:49 PM
330 Specific software MONARC Public Apr 12, 2019, 1:54:49 PM
335 No service level management MONARC Public Apr 12, 2019, 1:54:49 PM
346 No awareness of the risks of sanction MONARC Public Apr 12, 2019, 1:54:49 PM
225 Logical access to equipment allowing eavesdropping software to be installed MONARC Public Apr 12, 2019, 1:54:49 PM
230 No means of guaranteeing the source of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
235 No systematic qualification procedure before installation or updating MONARC Public Apr 12, 2019, 1:54:49 PM
240 Specific hardware MONARC Public Apr 12, 2019, 1:54:49 PM
245 No clock synchronisation procedure MONARC Public Apr 12, 2019, 1:54:49 PM
250 Easily removed hard disc MONARC Public Apr 12, 2019, 1:54:49 PM
255 The equipment can be booted from any peripheral (e.g. floppy disc, CD-ROM) MONARC Public Apr 12, 2019, 1:54:49 PM
260 Equipment requiring air-conditioning in order to operate MONARC Public Apr 12, 2019, 1:54:49 PM
265 No back-up redundancy or procedure MONARC Public Apr 12, 2019, 1:54:49 PM
270 No means of protecting and monitoring data integrity MONARC Public Apr 12, 2019, 1:54:49 PM
274 No archiving procedure MONARC Public Apr 12, 2019, 1:54:49 PM
279 Media sent via postal services (external service providers, internal mail service, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
284 Tempting equipment (trading value, technology, strategic) MONARC Public Apr 12, 2019, 1:54:49 PM
289 Archives requiring air-conditioning for their preservation MONARC Public Apr 12, 2019, 1:54:49 PM
294 Medium unsuitable for the life of data to be stored MONARC Public Apr 12, 2019, 1:54:49 PM
299 No means of encryption MONARC Public Apr 12, 2019, 1:54:49 PM
304 No protection of media MONARC Public Apr 12, 2019, 1:54:49 PM
309 No audit of physical access control procedures MONARC Public Apr 12, 2019, 1:54:49 PM
314 No installation standard for sites belonging to the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
316 No emergency service close to the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
321 No rules for protecting the exchange of confidential information MONARC Public Apr 12, 2019, 1:54:49 PM
326 No monitoring of application of the security policy MONARC Public Apr 12, 2019, 1:54:49 PM
331 No personal commitment to protect confidentiality MONARC Public Apr 12, 2019, 1:54:49 PM
336 No incident monitoring to foresee failures or saturation (trend charts) MONARC Public Apr 12, 2019, 1:54:49 PM
341 No authorisation management and monitoring policy imposed at the organisation's sites MONARC Public Apr 12, 2019, 1:54:49 PM
348 No monitoring procedure MONARC Public Apr 12, 2019, 1:54:49 PM
226 No maintenance procedure MONARC Public Apr 12, 2019, 1:54:49 PM
231 Additional hardware items can be fitted for storing, transmitting or corrupting information (e.g. physical keylogger). MONARC Public Apr 12, 2019, 1:54:49 PM
236 Possibility of incompatibility between equipment items MONARC Public Apr 12, 2019, 1:54:49 PM
241 The system is connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
246 No tracking and auditing system MONARC Public Apr 12, 2019, 1:54:49 PM
251 Equipment used on self-service basis by a number of persons MONARC Public Apr 12, 2019, 1:54:49 PM
256 Equipment allowing data to be recorded on media (floppy disc, ZIP disc, CD/DVD writer) MONARC Public Apr 12, 2019, 1:54:49 PM
261 Easily dismantled equipment MONARC Public Apr 12, 2019, 1:54:49 PM
266 Access to back-up equipment not protected MONARC Public Apr 12, 2019, 1:54:49 PM
272 Medium sensitive to storage conditions MONARC Public Apr 12, 2019, 1:54:49 PM
277 Configuration of software components not managed or prone to management errors (e.g. application of a UK patch not adapted to a FR version) MONARC Public Apr 12, 2019, 1:54:49 PM
282 Media can be used to exchange sensitive information MONARC Public Apr 12, 2019, 1:54:49 PM
287 No labelling of media MONARC Public Apr 12, 2019, 1:54:49 PM
292 Easily transported media (e.g. removable hard disc, back-up cartridge) MONARC Public Apr 12, 2019, 1:54:49 PM
297 Back-up hardware, software or procedures modified without taking old back-ups or archives into account MONARC Public Apr 12, 2019, 1:54:49 PM
302 No procedure and means for destruction MONARC Public Apr 12, 2019, 1:54:49 PM
307 Loss or poor management of original documents (support contracts, licences, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
312 Lack of information concerning laws and regulations applicable to information processing MONARC Public Apr 12, 2019, 1:54:49 PM
319 No rules imposing the use of standards MONARC Public Apr 12, 2019, 1:54:49 PM
324 No identification of sensitive assets MONARC Public Apr 12, 2019, 1:54:49 PM
329 The security policy is not applied MONARC Public Apr 12, 2019, 1:54:49 PM
334 No information protection policy MONARC Public Apr 12, 2019, 1:54:49 PM
339 No licence monitoring policy imposed at the organisation's sites MONARC Public Apr 12, 2019, 1:54:49 PM
344 Non-upgradable software MONARC Public Apr 12, 2019, 1:54:49 PM
227 Equipment with a communication interface that can be eavesdropped (infrared, 802.11, Bluetooth, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
232 Maintenance fault MONARC Public Apr 12, 2019, 1:54:49 PM
237 Inaccessibility of support media outside the organisation or from a country with a large time difference MONARC Public Apr 12, 2019, 1:54:49 PM
242 The equipment can be used for purposes other than those intended (development of software for use outside the organisation, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
247 The equipment can be accessed and used by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
252 No passing up of information for a centralised malfunction analysis MONARC Public Apr 12, 2019, 1:54:49 PM
257 No data protection rules MONARC Public Apr 12, 2019, 1:54:49 PM
262 Access right management functions too complicated to use and capable of producing an error MONARC Public Apr 12, 2019, 1:54:49 PM
267 No report for maintenance operations MONARC Public Apr 12, 2019, 1:54:49 PM
271 No partitioning of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
276 No archive storage measures suitable for the storage periods (ageing of tapes, wear of CD-ROMs) MONARC Public Apr 12, 2019, 1:54:49 PM
281 No means of destroying the media MONARC Public Apr 12, 2019, 1:54:49 PM
286 Applications are not checked before installation MONARC Public Apr 12, 2019, 1:54:49 PM
291 No emergency procedure MONARC Public Apr 12, 2019, 1:54:49 PM
296 Unwanted persistence of data on media MONARC Public Apr 12, 2019, 1:54:49 PM
301 No backtrack procedure in the event of a modification error MONARC Public Apr 12, 2019, 1:54:49 PM
306 Sensitive documents read in public places (documents observed by external persons, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
311 No insurance cover for serious damage MONARC Public Apr 12, 2019, 1:54:49 PM
318 Managers have no contact with the expertise or technology watch departments MONARC Public Apr 12, 2019, 1:54:49 PM
323 No security policy for protecting the information processing infrastructure in the organisation's sites MONARC Public Apr 12, 2019, 1:54:49 PM
328 No structure responsible for defining, implementing and monitoring access privileges to information MONARC Public Apr 12, 2019, 1:54:49 PM
333 Security responsibilities concerning the classification of information are not formalised or known by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
338 Obsolete software MONARC Public Apr 12, 2019, 1:54:49 PM
343 Lack of information concerning laws and regulations applicable to information processing MONARC Public Apr 12, 2019, 1:54:49 PM
340 No rules and procedures for personnel authorisation MONARC Public Apr 12, 2019, 1:54:49 PM
345 No monitoring of critical processes by the parent organisation MONARC Public Apr 12, 2019, 1:54:49 PM
350 No definition of responsibilities MONARC Public Apr 12, 2019, 1:54:49 PM
355 Political / economic conflict between the organisation's home country and its host country MONARC Public Apr 12, 2019, 1:54:49 PM
360 No contractual clauses covering a crisis declared at a subcontractor's or supplier's site MONARC Public Apr 12, 2019, 1:54:49 PM
365 No contractual clauses covering the security measures to be observed by subcontractors and suppliers MONARC Public Apr 12, 2019, 1:54:49 PM
370 No contractual clauses guaranteeing the safety of supplies delivered by a subcontractor or supplier MONARC Public Apr 12, 2019, 1:54:49 PM
375 No contractual clauses covering support and call-out conditions MONARC Public Apr 12, 2019, 1:54:49 PM
380 Contract contains no clauses concerning identification and verification of the origin of the software. MONARC Public Apr 12, 2019, 1:54:49 PM
385 No confidentiality clause in the contract MONARC Public Apr 12, 2019, 1:54:49 PM
390 No protection of spaces dedicated to information exchange or sharing MONARC Public Apr 12, 2019, 1:54:49 PM
395 No mutual checking of codes MONARC Public Apr 12, 2019, 1:54:49 PM
400 No management of emergency equipment inspection reports MONARC Public Apr 12, 2019, 1:54:49 PM
405 No warning, reaction or information instructions in the event of water damage (no identification of stop cocks, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
410 No insurance cover for destruction of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
415 No sure means of identification MONARC Public Apr 12, 2019, 1:54:49 PM
420 No policy for storing and analysing activity tracks MONARC Public Apr 12, 2019, 1:54:49 PM
425 Possibility of modifying or corrupting the software MONARC Public Apr 12, 2019, 1:54:49 PM
430 No failure reporting (volumes, cost of incidents, downtime) MONARC Public Apr 12, 2019, 1:54:49 PM
435 Analysis of match between needs and equipment capabilities not organised MONARC Public Apr 12, 2019, 1:54:49 PM
440 No instructions for avoiding the use of IT resources in a manner that leads to saturation of storage spaces or processing resources. MONARC Public Apr 12, 2019, 1:54:49 PM
469 Assignment of user rights is not clearly defined MONARC Public Apr 12, 2019, 1:54:49 PM
349 Change of the organisation's policy or strategy MONARC Public Apr 12, 2019, 1:54:49 PM
354 Unfavourable industrial relations MONARC Public Apr 12, 2019, 1:54:49 PM
359 No security instructions given to external personnel working on the premises MONARC Public Apr 12, 2019, 1:54:49 PM
366 No equipment verification procedure before purchase or after maintenance work. MONARC Public Apr 12, 2019, 1:54:49 PM
371 No clause covering response time for repair and replacement in the event of equipment failure MONARC Public Apr 12, 2019, 1:54:49 PM
376 No contractual clause covering the activity (in the event of shutting down the activity, supplier bankruptcy, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
381 No policy for authorising access to information MONARC Public Apr 12, 2019, 1:54:49 PM
386 No provisions for monitoring and sanctioning MONARC Public Apr 12, 2019, 1:54:49 PM
391 No procedure for personnel authorisation MONARC Public Apr 12, 2019, 1:54:49 PM
396 Penalty or sanction clause out of proportion or not suited to the context MONARC Public Apr 12, 2019, 1:54:49 PM
401 No updated display of information for calling the emergency services MONARC Public Apr 12, 2019, 1:54:49 PM
406 No guarantee that water detectors are operating correctly MONARC Public Apr 12, 2019, 1:54:49 PM
411 No rules for the use and storage of hardware and information media (protection conditions during transport, smoking ban, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
416 No organisation for management of security incidents MONARC Public Apr 12, 2019, 1:54:49 PM
421 No information concerning the division of responsibility and means of guaranteeing the legitimacy of a request. MONARC Public Apr 12, 2019, 1:54:49 PM
426 No global policy for fighting against malicious code MONARC Public Apr 12, 2019, 1:54:49 PM
431 No protection against the use of advanced privileges MONARC Public Apr 12, 2019, 1:54:49 PM
436 No reporting on malfunctions MONARC Public Apr 12, 2019, 1:54:49 PM
444 The computing equipment is not homogenous MONARC Public Apr 12, 2019, 1:54:49 PM
449 No use of norms or standards relating to information system development MONARC Public Apr 12, 2019, 1:54:49 PM
454 No monitoring of product certification MONARC Public Apr 12, 2019, 1:54:49 PM
459 No access control to information MONARC Public Apr 12, 2019, 1:54:49 PM
464 No one responsible for the protection of personal data and information MONARC Public Apr 12, 2019, 1:54:49 PM
554 Low maintenance budget MONARC Public Apr 12, 2019, 1:54:49 PM
353 No global policy for managing and archiving tracks and other elements of proof MONARC Public Apr 12, 2019, 1:54:49 PM
358 Possibility of installing a backdoor or Trojan horse in the operating system MONARC Public Apr 12, 2019, 1:54:49 PM
367 Flaws in the management of administrator accounts MONARC Public Apr 12, 2019, 1:54:49 PM
372 No clause covering response time for repair and treatment in the event of malfunction MONARC Public Apr 12, 2019, 1:54:49 PM
377 No guarantee of the organisation's durability MONARC Public Apr 12, 2019, 1:54:49 PM
382 Accesses to the IS are not secured (gateways, intrusion detection, supervision of security events, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
387 No double checking of critical processes MONARC Public Apr 12, 2019, 1:54:49 PM
392 No climate of trust between individuals MONARC Public Apr 12, 2019, 1:54:49 PM
397 No clause or procedures for transfer of knowledge MONARC Public Apr 12, 2019, 1:54:49 PM
402 No fire-fighting organisation (description of roles and responsibilities) MONARC Public Apr 12, 2019, 1:54:49 PM
407 No monitoring of maintenance contracts MONARC Public Apr 12, 2019, 1:54:49 PM
412 No instructions (warning, prevention, reaction, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
417 No rules for checking equipment entering/leaving the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
422 No structure allowing identification of a person to be guaranteed within the organisation or a project MONARC Public Apr 12, 2019, 1:54:49 PM
427 No policy for protecting the workstations MONARC Public Apr 12, 2019, 1:54:49 PM
432 No rules covering conditions of use of information processing infrastructures (ban on smoking, drinks and food in rooms housing IT equipment) MONARC Public Apr 12, 2019, 1:54:49 PM
437 No rules covering the operating environment of information processing infrastructures (temperature, humidity, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
446 No implementation of basic security rules applicable to the operating system and software MONARC Public Apr 12, 2019, 1:54:49 PM
451 No instructions concerning the use of IT equipment MONARC Public Apr 12, 2019, 1:54:49 PM
456 The security policy does not include reminding all personnel of their obligations and responsibilities in civil, criminal and regulatory matters. MONARC Public Apr 12, 2019, 1:54:49 PM
461 No procedures for checking external floppy disks MONARC Public Apr 12, 2019, 1:54:49 PM
475 No personnel protection team MONARC Public Apr 12, 2019, 1:54:49 PM
356 No contractual clauses guaranteeing cover of the activities if a crisis is declared at the supplier's site MONARC Public Apr 12, 2019, 1:54:49 PM
361 No instructions given to external personnel working on the premises MONARC Public Apr 12, 2019, 1:54:49 PM
363 No contractual clauses covering compensation for damage in the event of loss of an essential service MONARC Public Apr 12, 2019, 1:54:49 PM
368 No means of guaranteeing the source of supplies MONARC Public Apr 12, 2019, 1:54:49 PM
373 No monitoring of data integrity MONARC Public Apr 12, 2019, 1:54:49 PM
378 No contractual clauses relating to the use of IT equipment MONARC Public Apr 12, 2019, 1:54:49 PM
383 No procedure or system for authorising personnel to modify data MONARC Public Apr 12, 2019, 1:54:49 PM
388 No contractual clauses setting out the responsibilities of both parties MONARC Public Apr 12, 2019, 1:54:49 PM
393 No contractual clause concerning the definition of communication and exchange procedures MONARC Public Apr 12, 2019, 1:54:49 PM
398 The organisation's financial or technological continuity is not secure MONARC Public Apr 12, 2019, 1:54:49 PM
403 No monitoring of maintenance contracts for fire-fighting equipment MONARC Public Apr 12, 2019, 1:54:49 PM
408 No measures in the event of interruption of air-conditioning service MONARC Public Apr 12, 2019, 1:54:49 PM
413 No protection of logs containing activity tracks MONARC Public Apr 12, 2019, 1:54:49 PM
418 Possibility of adding an eavesdropping programme such as a Trojan horse MONARC Public Apr 12, 2019, 1:54:49 PM
423 No operational qualification procedures MONARC Public Apr 12, 2019, 1:54:49 PM
428 Maintenance contract monitoring not organised MONARC Public Apr 12, 2019, 1:54:49 PM
433 No continuity plan covering the organisation's essential activities MONARC Public Apr 12, 2019, 1:54:49 PM
438 No policy for checking the correct sizing of the equipment of the information processing infrastructure, including the emergency equipment MONARC Public Apr 12, 2019, 1:54:49 PM
445 No Quality Assurance Manual MONARC Public Apr 12, 2019, 1:54:49 PM
450 No training plan for maintenance of new systems MONARC Public Apr 12, 2019, 1:54:49 PM
455 No monitoring of product origin MONARC Public Apr 12, 2019, 1:54:49 PM
460 No training plan concerning security issues MONARC Public Apr 12, 2019, 1:54:49 PM
465 The security policy is not applied especially in relation to processing of personal information MONARC Public Apr 12, 2019, 1:54:49 PM
470 Personnel receive no communication or information concerning authorisation procedures MONARC Public Apr 12, 2019, 1:54:49 PM
357 No access monitoring device when equipment is inactive MONARC Public Apr 12, 2019, 1:54:49 PM
362 No management of profile privileges (administrators, users, guest, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
364 No contractual clauses covering the maximum acceptable downtime of an essential service MONARC Public Apr 12, 2019, 1:54:49 PM
369 No procedure for checking work carried out by external personnel on the organisation's equipment MONARC Public Apr 12, 2019, 1:54:49 PM
374 No contractual clause covering the quality of service of systems placed under limit conditions (intense demand on the system, input of non-compliant data, input of data corresponding to operating limits) MONARC Public Apr 12, 2019, 1:54:49 PM
379 No contractual clauses concerning the use of fraudulent copies of software MONARC Public Apr 12, 2019, 1:54:49 PM
384 No contractual clauses relating to the protection of IT equipment MONARC Public Apr 12, 2019, 1:54:49 PM
389 Possibility of using the organisation's resources without supervision (self-service equipment, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
394 No audit policy MONARC Public Apr 12, 2019, 1:54:49 PM
399 No continuity clause for service provision MONARC Public Apr 12, 2019, 1:54:49 PM
404 Lack of teleworking rules MONARC Public Apr 12, 2019, 1:54:49 PM
409 No crisis management organisation MONARC Public Apr 12, 2019, 1:54:49 PM
414 The security responsibilities concerning authorisation management are not formalised. MONARC Public Apr 12, 2019, 1:54:49 PM
419 No storage of activity tracks MONARC Public Apr 12, 2019, 1:54:49 PM
424 No procedures for validating hardware components when they are delivered or returned from maintenance MONARC Public Apr 12, 2019, 1:54:49 PM
429 No monitoring of maintenance and support contracts with suppliers MONARC Public Apr 12, 2019, 1:54:49 PM
434 No quick response instructions to protect equipment in the event of water damage or fire MONARC Public Apr 12, 2019, 1:54:49 PM
439 Use of non-evaluated software MONARC Public Apr 12, 2019, 1:54:49 PM
441 No instructions relating to incidents (detection, action, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
443 No instructions aimed at eliminating risk-inducing behaviour in the use of information resources MONARC Public Apr 12, 2019, 1:54:49 PM
474 No mechanism for monitoring actions, logs and alerts MONARC Public Apr 12, 2019, 1:54:49 PM
442 No policy for partitioning user environments to avoid unintentional assignment of rights to modify the system and application MONARC Public Apr 12, 2019, 1:54:49 PM
447 No organisation for protecting documentation and system maintenance resources MONARC Public Apr 12, 2019, 1:54:49 PM
452 No IT charter specifying the rules of use MONARC Public Apr 12, 2019, 1:54:49 PM
457 Shared use of connection identifier MONARC Public Apr 12, 2019, 1:54:49 PM
462 Lack of awareness of individual responsibilities MONARC Public Apr 12, 2019, 1:54:49 PM
467 No definition of the right to know MONARC Public Apr 12, 2019, 1:54:49 PM
472 Software can be easily copied MONARC Public Apr 12, 2019, 1:54:49 PM
477 No procedures for transfer of knowledge MONARC Public Apr 12, 2019, 1:54:49 PM
482 Software not adequately tested before acceptance, especially concerning limit values MONARC Public Apr 12, 2019, 1:54:49 PM
487 Software not adequately tested before acceptance (test data set does not cover all the operating conditions - intense demand on the system, input of non-conforming data, input of data corresponding to operating limits) MONARC Public Apr 12, 2019, 1:54:49 PM
492 No hierarchical organisation or reporting procedure MONARC Public Apr 12, 2019, 1:54:49 PM
497 No process for managing the continuity of the project team's professional activities MONARC Public Apr 12, 2019, 1:54:49 PM
502 Low awareness of the need to protect information MONARC Public Apr 12, 2019, 1:54:49 PM
507 Obtaining an advantage through picking up information MONARC Public Apr 12, 2019, 1:54:49 PM
512 Failure to follow the rules concerning physical protection of transportable equipment MONARC Public Apr 12, 2019, 1:54:49 PM
517 Inadequate awareness of the need to protect sensitive information MONARC Public Apr 12, 2019, 1:54:49 PM
522 Obtaining an advantage MONARC Public Apr 12, 2019, 1:54:49 PM
524 Personnel not aware of the risk of sanction MONARC Public Apr 12, 2019, 1:54:49 PM
529 No training to explain the conditions controlling the lawful use of information MONARC Public Apr 12, 2019, 1:54:49 PM
534 No code of conduct MONARC Public Apr 12, 2019, 1:54:49 PM
539 No awareness programme concerning the risks of usurping of identity (misuse of means of authentication such as passwords) MONARC Public Apr 12, 2019, 1:54:49 PM
544 Use of software without a guarantee of its source MONARC Public Apr 12, 2019, 1:54:49 PM
549 No implementation of incident monitoring to foresee failures or saturation (trend charts) MONARC Public Apr 12, 2019, 1:54:49 PM
448 No procedures for system install and configuration MONARC Public Apr 12, 2019, 1:54:49 PM
453 No awareness or information concerning copyright law MONARC Public Apr 12, 2019, 1:54:49 PM
458 No detection system of malicious programs MONARC Public Apr 12, 2019, 1:54:49 PM
463 Tempting or popular software MONARC Public Apr 12, 2019, 1:54:49 PM
468 No regulation defining rights MONARC Public Apr 12, 2019, 1:54:49 PM
473 Inappropriate organisation MONARC Public Apr 12, 2019, 1:54:49 PM
478 The organisation's activity is impaired by its industrial relations MONARC Public Apr 12, 2019, 1:54:49 PM
483 Presence of residual data used by the software MONARC Public Apr 12, 2019, 1:54:49 PM
488 No definition of privileges limiting the possibility of installing software on workstations MONARC Public Apr 12, 2019, 1:54:49 PM
493 Audit functions are not separate from monitoring functions MONARC Public Apr 12, 2019, 1:54:49 PM
498 No document base for rules and procedures MONARC Public Apr 12, 2019, 1:54:49 PM
503 No management support for application of the security policy MONARC Public Apr 12, 2019, 1:54:49 PM
508 Failure to follow rules concerning information classification. MONARC Public Apr 12, 2019, 1:54:49 PM
513 Obtaining an advantage through selling equipment MONARC Public Apr 12, 2019, 1:54:49 PM
518 Failure to observe discretion MONARC Public Apr 12, 2019, 1:54:49 PM
527 Conflictual situation between persons MONARC Public Apr 12, 2019, 1:54:49 PM
532 The notion of right is not defined for the personnel MONARC Public Apr 12, 2019, 1:54:49 PM
537 No verification of approved shared access MONARC Public Apr 12, 2019, 1:54:49 PM
542 Users lack competency MONARC Public Apr 12, 2019, 1:54:49 PM
547 Failure to comply with anti-virus software updating rules MONARC Public Apr 12, 2019, 1:54:49 PM
552 No incident monitoring to foresee malfunctions (trend charts) MONARC Public Apr 12, 2019, 1:54:49 PM
557 Lack of understanding of responsibilities MONARC Public Apr 12, 2019, 1:54:49 PM
562 Users poorly trained or not trained at all MONARC Public Apr 12, 2019, 1:54:49 PM
567 Inadequate awareness programme concerning physical protection of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
466 No training on the equipment or software used MONARC Public Apr 12, 2019, 1:54:49 PM
471 No procedure for passing up information in the event of detection MONARC Public Apr 12, 2019, 1:54:49 PM
476 Viral epidemic in the locality MONARC Public Apr 12, 2019, 1:54:49 PM
481 No identification of security needs for a project MONARC Public Apr 12, 2019, 1:54:49 PM
486 No rules covering conditions of use of information processing infrastructures (ban on smoking, drinks and food in rooms housing IT equipment) MONARC Public Apr 12, 2019, 1:54:49 PM
491 User grant rights are not controlled. MONARC Public Apr 12, 2019, 1:54:49 PM
496 No substitute organisation for sensitive functions MONARC Public Apr 12, 2019, 1:54:49 PM
501 No restriction on software entry points MONARC Public Apr 12, 2019, 1:54:49 PM
506 Low awareness of the need to protect the confidentiality of information exchanges MONARC Public Apr 12, 2019, 1:54:49 PM
511 Low awareness of the need to protect equipment outside the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
516 Failure to observe information classification rules MONARC Public Apr 12, 2019, 1:54:49 PM
521 Obtaining an advantage through misinforming MONARC Public Apr 12, 2019, 1:54:49 PM
523 Software can be used by everyone (e.g. no password required for remote administration of a workstation) MONARC Public Apr 12, 2019, 1:54:49 PM
528 No encryption system MONARC Public Apr 12, 2019, 1:54:49 PM
533 Rights assigned without legitimate need MONARC Public Apr 12, 2019, 1:54:49 PM
538 No explicit documentation on the application systems MONARC Public Apr 12, 2019, 1:54:49 PM
543 Conflictual industrial relations MONARC Public Apr 12, 2019, 1:54:49 PM
548 Obtaining an advantage through disrupting the information system MONARC Public Apr 12, 2019, 1:54:49 PM
553 Technology chosen without guarantee of continuity MONARC Public Apr 12, 2019, 1:54:49 PM
558 No formalisation of responsibilities known by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
563 Lack of responsibility MONARC Public Apr 12, 2019, 1:54:49 PM
568 No individual commitment to protect confidential documents MONARC Public Apr 12, 2019, 1:54:49 PM
479 No awareness and training programme for processes relating to continuity of professional activities MONARC Public Apr 12, 2019, 1:54:49 PM
484 No measures for checking developments MONARC Public Apr 12, 2019, 1:54:49 PM
489 Lack of personnel awareness MONARC Public Apr 12, 2019, 1:54:49 PM
494 The organisation is under-sized MONARC Public Apr 12, 2019, 1:54:49 PM
499 Unfamiliarity with security measures MONARC Public Apr 12, 2019, 1:54:49 PM
504 Insufficient training in measures and tools for protecting external and internal exchanges MONARC Public Apr 12, 2019, 1:54:49 PM
509 Low awareness of the need to protect confidential documents, leading to a lack of vigilance MONARC Public Apr 12, 2019, 1:54:49 PM
514 Failure to comply with rules concerning the destruction of media containing classified information MONARC Public Apr 12, 2019, 1:54:49 PM
519 The operating system allows access to data (data base, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
526 No protection and classification of information MONARC Public Apr 12, 2019, 1:54:49 PM
531 Some highly sensitive operations can be performed by a single person MONARC Public Apr 12, 2019, 1:54:49 PM
536 No awareness programme for protection of security equipment MONARC Public Apr 12, 2019, 1:54:49 PM
541 Failure to appreciate the importance of qualifying information MONARC Public Apr 12, 2019, 1:54:49 PM
546 Correct reflex actions not known if an anomaly is detected MONARC Public Apr 12, 2019, 1:54:49 PM
551 No decision to resize when significant increases in the use of IT resources are observed. MONARC Public Apr 12, 2019, 1:54:49 PM
556 No validation of keyed data entries MONARC Public Apr 12, 2019, 1:54:49 PM
561 Failure to comply with instructions MONARC Public Apr 12, 2019, 1:54:49 PM
566 Unavailability arising from a competition factor MONARC Public Apr 12, 2019, 1:54:49 PM
480 No process for managing the continuity of the organisation's professional activities MONARC Public Apr 12, 2019, 1:54:49 PM
485 No measures for protecting code integrity during the design, installation and operation phases MONARC Public Apr 12, 2019, 1:54:49 PM
490 No protection and audit of access to sensitive information MONARC Public Apr 12, 2019, 1:54:49 PM
495 No substitutes for strategic personnel MONARC Public Apr 12, 2019, 1:54:49 PM
500 No test of reaction and information procedures in the event of an accident MONARC Public Apr 12, 2019, 1:54:49 PM
505 Personnel susceptible to enticement MONARC Public Apr 12, 2019, 1:54:49 PM
510 Obtaining an advantage through disclosing information MONARC Public Apr 12, 2019, 1:54:49 PM
515 No information or awareness concerning residual data on media MONARC Public Apr 12, 2019, 1:54:49 PM
520 No vigilance when a maintenance agent works on a workstation or server MONARC Public Apr 12, 2019, 1:54:49 PM
525 Failure to comply with the IT charter specifying the rules of use MONARC Public Apr 12, 2019, 1:54:49 PM
530 Personnel categories with higher access privileges MONARC Public Apr 12, 2019, 1:54:49 PM
535 Missions not suited to the personnel MONARC Public Apr 12, 2019, 1:54:49 PM
540 Credulity MONARC Public Apr 12, 2019, 1:54:49 PM
545 Low awareness of the threat posed by malicious codes MONARC Public Apr 12, 2019, 1:54:49 PM
550 No procedure for testing incoming goods and confirming their compliance with the specifications MONARC Public Apr 12, 2019, 1:54:49 PM
555 Existence of obsolete components in the information processing infrastructure (development in languages no longer used, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
560 Lack of professionalism MONARC Public Apr 12, 2019, 1:54:49 PM
565 Responsibility of each person not known MONARC Public Apr 12, 2019, 1:54:49 PM
559 Unfavourable work conditions MONARC Public Apr 12, 2019, 1:54:49 PM
564 Lack of confidence in the organisation MONARC Public Apr 12, 2019, 1:54:49 PM
569 Application that is complex to use MONARC Public Apr 12, 2019, 1:54:49 PM
570 No means of guaranteeing the authenticity of codes MONARC Public Apr 12, 2019, 1:54:49 PM
571 Conflictual situation MONARC Public Apr 12, 2019, 1:54:49 PM
572 No means of guaranteeing the authenticity of developments MONARC Public Apr 12, 2019, 1:54:49 PM
573 Lack of training MONARC Public Apr 12, 2019, 1:54:49 PM
574 No security rules for developments MONARC Public Apr 12, 2019, 1:54:49 PM
575 Failure to comply with quality rules MONARC Public Apr 12, 2019, 1:54:49 PM
576 No standard or norm MONARC Public Apr 12, 2019, 1:54:49 PM
577 Failure to comply with development rules MONARC Public Apr 12, 2019, 1:54:49 PM
578 No accessible user support MONARC Public Apr 12, 2019, 1:54:49 PM
579 Insufficient monitoring of material requirements for developing an application MONARC Public Apr 12, 2019, 1:54:49 PM
580 No product certification MONARC Public Apr 12, 2019, 1:54:49 PM
581 No procedure for assessing products MONARC Public Apr 12, 2019, 1:54:49 PM
582 No procedure and means of verifying the origin of the software (code signature, binary signature, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
583 No user documentation for existing applications MONARC Public Apr 12, 2019, 1:54:49 PM
584 Lack of motivation for work involving data keying MONARC Public Apr 12, 2019, 1:54:49 PM
585 Personnel not used to keying MONARC Public Apr 12, 2019, 1:54:49 PM
586 Unavailability caused by illness MONARC Public Apr 12, 2019, 1:54:49 PM
587 Unavailability caused by absenteeism MONARC Public Apr 12, 2019, 1:54:49 PM
588 No back-up of event logs MONARC Public Apr 12, 2019, 1:54:49 PM
589 Unavailability caused by third parties (physical aggression, hostage taking, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
590 Social problems MONARC Public Apr 12, 2019, 1:54:49 PM
591 No emergency situation management procedures MONARC Public Apr 12, 2019, 1:54:49 PM
592 Operator or maintainer with extended privileges MONARC Public Apr 12, 2019, 1:54:49 PM
593 Unfamiliarity with emergency procedures if an anomaly is detected MONARC Public Apr 12, 2019, 1:54:49 PM
594 No training in the use and maintenance of new software MONARC Public Apr 12, 2019, 1:54:49 PM
595 Incorrect sizing of operating and maintenance resources MONARC Public Apr 12, 2019, 1:54:49 PM
600 No management of the equipment assets MONARC Public Apr 12, 2019, 1:54:49 PM
605 TEMPEST zoning not carried out MONARC Public Apr 12, 2019, 1:54:49 PM
610 Proximity of industrial activity or potentially hazardous site MONARC Public Apr 12, 2019, 1:54:49 PM
615 Use of equipment outside the organisation (personnel's homes, another organisation, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
620 No control of access to the site or premises MONARC Public Apr 12, 2019, 1:54:49 PM
625 Polluted atmosphere (hangar, workshop, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
630 No checking (or tracking) of exchanges with the outside MONARC Public Apr 12, 2019, 1:54:49 PM
635 Unfavourable work environment (rooms too small, lack of storage areas, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
640 No sizing of the automatic fire extinction system, or incorrect sizing or inadequacy of this system. MONARC Public Apr 12, 2019, 1:54:49 PM
642 No clear identification of water stop cocks MONARC Public Apr 12, 2019, 1:54:49 PM
647 No sump MONARC Public Apr 12, 2019, 1:54:49 PM
652 Zone observable from a passage way MONARC Public Apr 12, 2019, 1:54:49 PM
657 Wiring laid on the floor MONARC Public Apr 12, 2019, 1:54:49 PM
662 Unprotected physical access to rooms housing electrical power supply and distribution equipment or telecommunication equipment MONARC Public Apr 12, 2019, 1:54:49 PM
667 Incorrect sizing of telecommunication resources, resulting, for example, from daily use of resources intended for the emergency solution. MONARC Public Apr 12, 2019, 1:54:49 PM
672 Incorrect sizing of emergency power supply equipment (inverter, batteries, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
677 The low voltage panel is not accessible MONARC Public Apr 12, 2019, 1:54:49 PM
682 No operating procedure MONARC Public Apr 12, 2019, 1:54:49 PM
687 Ageing of air-conditioning filters MONARC Public Apr 12, 2019, 1:54:49 PM
691 Unprotected access to water and power supply equipment MONARC Public Apr 12, 2019, 1:54:49 PM
696 The equipment is connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
701 Medium and supports whose characteristics allow eavesdropping (e.g. Ethernet, wireless communication systems) MONARC Public Apr 12, 2019, 1:54:49 PM
706 Ageing of the medium MONARC Public Apr 12, 2019, 1:54:49 PM
596 Failure to follow work procedures MONARC Public Apr 12, 2019, 1:54:49 PM
601 Lack of information concerning conditions of use of emergency power supply points MONARC Public Apr 12, 2019, 1:54:49 PM
606 Site located in flood-prone area MONARC Public Apr 12, 2019, 1:54:49 PM
611 No control of access to the site or premises or possibility of intrusion via indirect access routes. MONARC Public Apr 12, 2019, 1:54:49 PM
616 Presence of discarded media outside the site MONARC Public Apr 12, 2019, 1:54:49 PM
621 No fire partitions MONARC Public Apr 12, 2019, 1:54:49 PM
626 Rooms in which explosion/implosion risks have not been taken into account MONARC Public Apr 12, 2019, 1:54:49 PM
631 Failure to take into account a specific environment that increases the risks of failure (overheated atmosphere, industrial environment, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
636 No history recording persons entering and leaving MONARC Public Apr 12, 2019, 1:54:49 PM
645 Fire extinction system using water MONARC Public Apr 12, 2019, 1:54:49 PM
650 Room situated close to a public right-of-way MONARC Public Apr 12, 2019, 1:54:49 PM
655 Manual triggering of the emergency solution MONARC Public Apr 12, 2019, 1:54:49 PM
660 Operating faults on the internal telephone network MONARC Public Apr 12, 2019, 1:54:49 PM
665 Access to communication terminal equipment not protected MONARC Public Apr 12, 2019, 1:54:49 PM
670 Technical rooms too cramped MONARC Public Apr 12, 2019, 1:54:49 PM
675 The floor or wall coverings are not anti-static MONARC Public Apr 12, 2019, 1:54:49 PM
680 Earthing of exposed conductive parts does not comply with regulations MONARC Public Apr 12, 2019, 1:54:49 PM
685 No water stop cock MONARC Public Apr 12, 2019, 1:54:49 PM
690 System not adequately sized to meet the needs MONARC Public Apr 12, 2019, 1:54:49 PM
692 Media accessible to unauthorised persons MONARC Public Apr 12, 2019, 1:54:49 PM
697 The system can be used for purposes other than those intended MONARC Public Apr 12, 2019, 1:54:49 PM
702 Physical or logical access to a relay allowing eavesdropping equipment to be installed MONARC Public Apr 12, 2019, 1:54:49 PM
707 Possibility of incompatibility between the media and other components MONARC Public Apr 12, 2019, 1:54:49 PM
712 Access point allowing unlawful eavesdropping MONARC Public Apr 12, 2019, 1:54:49 PM
717 The supports and medium are connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
597 Insufficient training in the correct use of the information tool (disturbance of the system, installation of incompatible software, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
602 No passing up of information for a centralised failure analysis MONARC Public Apr 12, 2019, 1:54:49 PM
607 Procedures for managing access privileges too heavy to operate MONARC Public Apr 12, 2019, 1:54:49 PM
612 Presence of observation point outside the site MONARC Public Apr 12, 2019, 1:54:49 PM
617 Difficult industrial relations possibly resulting in transport strikes MONARC Public Apr 12, 2019, 1:54:49 PM
622 No control of physical access points to the premises MONARC Public Apr 12, 2019, 1:54:49 PM
627 Single copy of licence contracts MONARC Public Apr 12, 2019, 1:54:49 PM
632 No procedures for checking authorisation of personnel entering the site or premises MONARC Public Apr 12, 2019, 1:54:49 PM
637 Specialised personnel accommodated in remote rooms MONARC Public Apr 12, 2019, 1:54:49 PM
644 Water pipe close to equipment MONARC Public Apr 12, 2019, 1:54:49 PM
649 No revision of air-conditioning needs when premises are modified or equipment is added. MONARC Public Apr 12, 2019, 1:54:49 PM
654 No checking to confirm that emergency resources operate correctly MONARC Public Apr 12, 2019, 1:54:49 PM
659 No maintenance of termination and distribution equipment MONARC Public Apr 12, 2019, 1:54:49 PM
664 No protection of access to equipment MONARC Public Apr 12, 2019, 1:54:49 PM
669 No labelling of cables or cable layout plan MONARC Public Apr 12, 2019, 1:54:49 PM
674 Rooms containing acid-based batteries are not fitted with mechanical ventilation and explosion-proof electrical equipment. MONARC Public Apr 12, 2019, 1:54:49 PM
679 No analysis of emergency power level required if equipment is added MONARC Public Apr 12, 2019, 1:54:49 PM
684 Ageing of cooling pipes MONARC Public Apr 12, 2019, 1:54:49 PM
689 System depending on a chilled water or power supplier MONARC Public Apr 12, 2019, 1:54:49 PM
695 The equipment can be accessed by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
700 Medium and supports capable of emitting compromising stray radiation MONARC Public Apr 12, 2019, 1:54:49 PM
705 Poor medium reliability MONARC Public Apr 12, 2019, 1:54:49 PM
710 Maintenance or use of the equipment only possible if network supports are available MONARC Public Apr 12, 2019, 1:54:49 PM
715 No network partitioning MONARC Public Apr 12, 2019, 1:54:49 PM
598 No event logging MONARC Public Apr 12, 2019, 1:54:49 PM
603 Unfamiliarity with the instructions for using the equipment MONARC Public Apr 12, 2019, 1:54:49 PM
608 Proximity of pollution sources (noise, smoke, vapour, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
613 Possibility of picking up transmissions outside the site MONARC Public Apr 12, 2019, 1:54:49 PM
618 Presence of an opening onto a public right-of-way (window) MONARC Public Apr 12, 2019, 1:54:49 PM
623 External opening not watertight MONARC Public Apr 12, 2019, 1:54:49 PM
628 Public access close to the buildings MONARC Public Apr 12, 2019, 1:54:49 PM
633 No procedures for checking the identity of all persons entering the premises or zones MONARC Public Apr 12, 2019, 1:54:49 PM
638 Personnel living a long way from the premises MONARC Public Apr 12, 2019, 1:54:49 PM
643 Unprotected access point MONARC Public Apr 12, 2019, 1:54:49 PM
648 Unprotected physical access to rooms housing equipment or media. MONARC Public Apr 12, 2019, 1:54:49 PM
653 Presence of discarded media in zones accessible to persons who have no need to know MONARC Public Apr 12, 2019, 1:54:49 PM
658 Terminal communication equipment with no emergency power supply MONARC Public Apr 12, 2019, 1:54:49 PM
663 Ancillary equipment making it easier to pick up compromising stray signals (electrical cables, pipes, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
668 No measures to make communication lines and equipment secure MONARC Public Apr 12, 2019, 1:54:49 PM
673 Unprotected physical access to rooms housing electrical power supply and distribution equipment MONARC Public Apr 12, 2019, 1:54:49 PM
678 The medium / low voltage transformer substation is not installed on the site (with controlled supplier access) MONARC Public Apr 12, 2019, 1:54:49 PM
683 No maintenance of air-conditioning equipment MONARC Public Apr 12, 2019, 1:54:49 PM
688 Unprotected access to equipment MONARC Public Apr 12, 2019, 1:54:49 PM
694 The equipment allows system resources to be used from outside MONARC Public Apr 12, 2019, 1:54:49 PM
699 Unidentified underground equipment MONARC Public Apr 12, 2019, 1:54:49 PM
704 Possibility of corrupting a communication MONARC Public Apr 12, 2019, 1:54:49 PM
709 No cable layout plan MONARC Public Apr 12, 2019, 1:54:49 PM
714 No physical and logical protection MONARC Public Apr 12, 2019, 1:54:49 PM
719 Possibility of creating or modifying system commands MONARC Public Apr 12, 2019, 1:54:49 PM
599 Use of software or developments outside the organisation's norms and standards MONARC Public Apr 12, 2019, 1:54:49 PM
604 Low awareness of the need to economise the organisation's IT resources (poor use of storage spaces, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
609 Possibilities of destruction caused by an external event (collisions, attacks) MONARC Public Apr 12, 2019, 1:54:49 PM
614 Media or documents sent or present outside the site MONARC Public Apr 12, 2019, 1:54:49 PM
619 Ageing of the premises MONARC Public Apr 12, 2019, 1:54:49 PM
624 Presence of a fire extinction system using water MONARC Public Apr 12, 2019, 1:54:49 PM
629 Presence of discarded media in public places MONARC Public Apr 12, 2019, 1:54:49 PM
634 No logging of entry to the site MONARC Public Apr 12, 2019, 1:54:49 PM
639 No precautions taken at the installation phase for fire risks specific to the equipment housed. MONARC Public Apr 12, 2019, 1:54:49 PM
641 Ceiling or external opening not watertight MONARC Public Apr 12, 2019, 1:54:49 PM
646 Water pipe close to termination equipment MONARC Public Apr 12, 2019, 1:54:49 PM
651 Zone with opening onto a public right-of-way MONARC Public Apr 12, 2019, 1:54:49 PM
656 Unprotected access to rooms housing production equipment or distribution equipment for essential services MONARC Public Apr 12, 2019, 1:54:49 PM
661 Operating problem already encountered on the telecommunication service supply MONARC Public Apr 12, 2019, 1:54:49 PM
666 Single internally-developed applications MONARC Public Apr 12, 2019, 1:54:49 PM
671 Rooms containing acid-based batteries are not specifically designed and physically isolated from the equipment to which they are connected MONARC Public Apr 12, 2019, 1:54:49 PM
676 Software retrieval from a non-authenticated source MONARC Public Apr 12, 2019, 1:54:49 PM
681 Incorrect sizing of emergency resources MONARC Public Apr 12, 2019, 1:54:49 PM
686 No correctly sized redundant equipment MONARC Public Apr 12, 2019, 1:54:49 PM
693 Possibility of circuit derivation MONARC Public Apr 12, 2019, 1:54:49 PM
698 No physical and logical protection (partitioning, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
703 Presence of a communication network with the outside allowing exchange of information MONARC Public Apr 12, 2019, 1:54:49 PM
708 Medium and supports with technical characteristics specific to their locality (e.g. different ADSL configuration parameters between France and the United Kingdom) MONARC Public Apr 12, 2019, 1:54:49 PM
713 No up-to-date labelling and diagram of the architecture MONARC Public Apr 12, 2019, 1:54:49 PM
711 Possibility of interfering with data transmitted via the communication media MONARC Public Apr 12, 2019, 1:54:49 PM
716 The interfaces are connected to external networks MONARC Public Apr 12, 2019, 1:54:49 PM
721 The medium allows system resources to be used from outside MONARC Public Apr 12, 2019, 1:54:49 PM
726 No authentication of equipment connected to the network MONARC Public Apr 12, 2019, 1:54:49 PM
731 Standard interface allowing information exchanges (e.g. Bluetooth interface accepting all communications by default) MONARC Public Apr 12, 2019, 1:54:49 PM
736 Possibility of remote administration of the system using non-encrypted administration tools MONARC Public Apr 12, 2019, 1:54:49 PM
741 Interface with technical characteristics specific to the country (e.g. different telephone connectors between France and the United Kingdom) MONARC Public Apr 12, 2019, 1:54:49 PM
746 Poor management of pilot releases and configurations MONARC Public Apr 12, 2019, 1:54:49 PM
718 Technical characteristics can be modified (e.g. MAC address of an Ethernet card) MONARC Public Apr 12, 2019, 1:54:49 PM
723 Possible harm to personnel using the equipment (wireless transmission, emanations, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
728 Communication in broadcast mode MONARC Public Apr 12, 2019, 1:54:49 PM
733 No user notification MONARC Public Apr 12, 2019, 1:54:49 PM
738 Possibility of adding software derivations MONARC Public Apr 12, 2019, 1:54:49 PM
743 Connection passwords not sufficiently complex MONARC Public Apr 12, 2019, 1:54:49 PM
748 System maintained or operated via the network MONARC Public Apr 12, 2019, 1:54:49 PM
720 The relays can be accessed by everyone MONARC Public Apr 12, 2019, 1:54:49 PM
725 Fragility of equipment MONARC Public Apr 12, 2019, 1:54:49 PM
730 Interface with a function that allows eavesdropping MONARC Public Apr 12, 2019, 1:54:49 PM
735 Protocol not allowing safe authentication of the sender of a communication MONARC Public Apr 12, 2019, 1:54:49 PM
740 Additional software can be added for storing, transmitting or corrupting information (e.g. keylogger) MONARC Public Apr 12, 2019, 1:54:49 PM
745 Possibility of subjecting the relays to an excessive number of requests or intense interference (e.g. denial of service attacks such as smurfing, SYN flood etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
722 The supports and medium can be accessed by everyone and are active by default (e.g. RJ45 connectors intermingled) MONARC Public Apr 12, 2019, 1:54:49 PM
727 Physical access to communication support or equipment allowing eavesdropping equipment to be installed MONARC Public Apr 12, 2019, 1:54:49 PM
732 Resources can be used without tracking MONARC Public Apr 12, 2019, 1:54:49 PM
737 The network makes it easy for unauthorised persons to use the resources MONARC Public Apr 12, 2019, 1:54:49 PM
742 Possibility of incorrect configuration, installation or modification of relays MONARC Public Apr 12, 2019, 1:54:49 PM
747 Interface side effects (compatibility problems between protocols, etc.) MONARC Public Apr 12, 2019, 1:54:49 PM
749 No maximum response time for support guarantees MONARC Public Apr 12, 2019, 1:54:49 PM
724 Equipment accessible to unauthorised persons MONARC Public Apr 12, 2019, 1:54:49 PM
729 Complex routing between sub-networks MONARC Public Apr 12, 2019, 1:54:49 PM
734 No strict routing between sub-networks MONARC Public Apr 12, 2019, 1:54:49 PM
739 The network allows the system resources to be modified or adjusted MONARC Public Apr 12, 2019, 1:54:49 PM
744 Possibility of incompatibility between resources MONARC Public Apr 12, 2019, 1:54:49 PM