• Home
  • Consulting Offerings
    • Copilot – AI
    • Workshops & Trainings
    • Assessments
    • Architecture design session
    • Proof of concept
    • Managed Services
    • Resources
  • Managed Services
  • E-Suite
    • E-Suite ofertas de descubrimiento
    • E-Visor
    • E-Visor Teams App
    • E-Vigilant
    • E-Inspector
    • E-Cryptor
    • E-Migrator
    • Resources
  • Solutions
    • Advanced Compliance
    • Secure Communications
    • Device Management
    • Threat Response
    • Identity Optimization
    • Information Protection
    • Resources
  • Events
  • About us
    • News and events
    • Careers
    • Partners
    • Microsoft FastTrack Ready Partner
    • Personal data processing policy
    • Terms & Conditions
    • Support
  • Blog
  • Sep 8
  • Comments (0)

Vulnerability Alert: Active x component exploit in Office files may allow remote code execution

Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft Office documents.

An attacker could craft a malicious ActiveX control to be used by a Microsoft Office document that hosts the browser rendering engine. The attacker would then have to convince the user to open the malicious document. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

Microsoft Defender Antivirus and Microsoft Defender for Endpoint both provide detection and protections for the known vulnerability

Actions:
1.Customers should keep antimalware products up to date.
2.Customers who utilize automatic updates do not need to take additional action.
3.Enterprise customers who manage updates should select the detection build 1.349.22.0 or newer and deploy it across their environments.

Microsoft Defender for Endpoint alerts will be displayed as: “Suspicious Cpl File Execution”.

More information:
CVE-2021-40444

We at Synergy Advisors are committed to working with clients through this issue so please let us know if you need help ASAP. Support Page

  • Share:
Previous Article: Alerta de vulnerabilidad: Un exploit del componente Active x en archivos de Office puede permitir la ejecución remota de código
Next Article Microsoft anuncia la retirada del Centro de Administración de Exchange clásico (EAC)

Categories

  • Awards and Recognitions
  • Blog
  • Blog-es
  • Collaboration
  • General
  • General News
  • Premios y reconocimientos
  • Solutions
  • Webinars

Recent Posts

  • Enhancing AI Security with Microsoft Defender for Cloud
  • Optimizing Enterprise Security with the New Copilot for Security Monitoring Dashboard
  • Synergy Advisors Accelerators for Secure Collaboration using Copilot for Microsoft 365

Categories

  • Awards and Recognitions
  • Blog
  • Blog-es
  • Collaboration
  • General
  • General News
  • Premios y reconocimientos
  • Solutions
  • Webinars

Secure Communications Solutions Catalog

  • Microsoft Teams Architecture Design Session
  • Microsoft Teams Event
  • Microsoft Teams Deployment
  • Microsoft Teams Security
  • Advanced Compliance
  • Device Magement
  • Secure Communications
  • Identity Optimization
  • Information Protection
  • Secure Communications
  • Threat Response

Offerings Catalog

  • Workshops and Trainings
  • Architecture Design Session
  • Assessments
  • Proof of Concept
  • Managed Services
  • Self-Service Teams training

Workshops Catalog

  • Enterprise Conditional Access Workshop
  • Cyber Security Defense ATP Workshop
  • Enterprise Data Loss Prevention Workshop
  • Information Protection Workshop
  • Microsoft Teams Workshop
  • Secure Azure Resources with Azure Security Center Workshop
  • App Identity Evaluation Workshop

Assessments Catalog

  • Microsoft Teams Assessment
  • M365 – Rapid Cybersecurity & Compliance Assessment
  • E-Visor Microsoft 365 Activity & Security Assessment

©2020 Synergy Advisors LLC. ALL RIGHTS RESERVED.

Contact Us at (+1) 425-689-3310 or through our Support Page