Still finding "high" vulnerabilities when fully patched

Hello everyone,
      We use Tenable Security's Nessus product to identify vulnerabilities on our servers.  After patching fully, I still see several vulnerabilities.  I have discovered that 90%+ are because of third party applications that we aren't
currently patching (we will be in the next month or so), but there are some that are Microsoft patches that aren't synchronizing with SCCM and I need help understanding why.  So in short, I'm worried about the 10%.
2 examples;
MS12-043; Vulnerability in Microsoft XML Core Services could allow remote code execution
MS11-025; Vulnerability in Microsoft Foundation Class (MFC) Library could allow remote code execution
I have SCCM configured to download the following classifications: Critical Updates, Security Updates, Update Rollups, and Service Packs.  I have it configured to not download; Definition Updates, Feature Packs, Tools, Updates.
I have several Microsoft applications chosen for updates to be downloaded for, but I do not see .NET Framework even in the available list (.NET Framework is one of the things that I need to update per Nessus).
Any suggestions?
Thanks

I do have 12-043 in ConfigMgr. It shows up as a security update. I think these are coming in as part of the OS updates. Are you sync'ing the OS product.
Here are the details from one of them:
Security Update for Microsoft XML Core Services 4.0 Service Pack 3 for x64-based
Bulletin ID: MS12-043
Article ID: 2721691
Date revised: Tuesday, October 09, 2012
Maximum severity rating: Critical
Description:
A security issue has been identified in Microsoft XML Core Services (MSXML) that could allow an attacker to compromise your Windows-based system and gain control over it. You can help protect your computer by installing this update from Microsoft. After you
install this item, you may have to restart your computer. Once you have installed this item, it cannot be removed.
Applicable languages:
Chinese (Taiwan)
Chinese (People's Republic of China)
English
French
German
Italian
Japanese
Korean
Spanish
Affected products:
Windows 7
Windows Server 2003, Datacenter Edition
Windows Server 2003
Windows Server 2008 R2
Windows Server 2008
Windows Vista
Windows XP x64 Edition
Windows 8 Release Preview
Windows Server 2012 Release Candidate
John Marcum | http://myitforum.com/cs2/blogs/jmarcum/|

Similar Messages

  • Security scans on DBMS server still show Java vulnerabilities after applying JavaVM Component patch 20233168

    JavaVM Component patch 19618575 was applied to our Oracle 11.2.0.3 DBMS Windows 8 server and a security scan was done showing no vulnerabilities.
    However, patch 19618575 was rolled back by Bundle Patch 34 (20227195) and Oracle released another JavaVM Component patch 20227195.  We applied the new JavaVM patch successfully and the System Admin did the security scan which showed there was still a vulnerability for the JavaVM Component.
    Is anyone else having this problem.

    Richard,
    I have just applied patch to upgrade from Portal 3.0.9 to 3.0.9.8.1 (Patch applied to loginserver and portal schema) and the External Applications that were previously set up have gone from the portlet.
    Does this relate to your note at the bottom:
    "Minor issues with Bulk action. 1840420 CUSTOM WRITTEN EXTERNAL AUTH MODULE NEED TO BE UPDATED AFTER 3.0.9 UPGRADE SSOXOID.PKB DOESN'T LOAD.
    External authentication modules that were written before 3.0.9 need to be updated after upgrading to 3.0.9. ssoauthx.pks is updated in 3.0.9 and contains additional routines that need to be implemented." ??
    If I go to the "Login Server Administration" portlet and select the link "Administer External Applications" I get a list of 5 External Applications that have previously been set up.
    If I go back to the Home Page and select "customize" on the "External Applications" portlet I get the message "Your Login Server administrator has not registered any external applications".
    Does that mean I should just run 'ssoauthx.pks' & 'ssoxoid.pkb' or do I need to do something else ??
    Thanks
    Simo

  • TS1845 i am running windows xp and have tried at a resolution higher than 1024 x 768 but i tunes is still not displaying all options fully on my pc?

    I am running windows xp and have tried chnaging the resolution to 1024 x 768 or highre and am still finding that not all the options on i tunes are displayed on my pc. I have also tried unistalling and reinstalling the software but to no avail. At present all the left hand tabs are missing and the info and summary tabs are missing which means i cannot sync etc

    You'll probably have more luck getting help if you ask in the iTunes for Windows forum rather than here in the iTunes for Mac forum. If, however, you have iTunes 11, many people haven't yet figured out the new default interface in iTunes 11. To get to the iPad information so you can sync, click the iPad button in the header bar at the upper-right:
    Or go to the View menu and select "Show Sidebar" and the interface will then look substantially like it did in earlier versions. If you don't see the menus, go to the small icon with the arrow at the extreme upper left and select "Show Menu Bar":
    Regards.

  • When making a call, sometimes, my iPhone 5 , gets stuck on 'Calling' than I have to press END..but still nothing happens, than when I press HOME button, the call app keeps running in the background and it keeps saying CALLING... please help

    When making a call, sometimes, my iPhone 5 , gets stuck on 'Calling' than I have to press END..but still nothing happens, than when I press HOME button, the call app keeps running in the background and it keeps saying CALLING... than I have to wait 2 - 3 minutes and call again.
    please help

    Has nothing to do with the SIM or master reset.  This has been done to my phone.  The SIM once and the factory reset many times over.  You all just sold us a bad piece of equipment and have us by the tail with our contracts so none of us can get a new phone without paying full price or re-upping our contract.  I just got off the phone last night with your high up tech people (you know, the hidden number we get once we tear into your support people enough), they went into my phone again and still didn't find anything wrong.  I about got fired from my job for not getting my calls and texts.  The BBB has now been contacted, and I feel your end should shore this up for all of us!

  • My new Ipad 2 wifi does not charge and itunes does not find my device when pluged into my pc

    My new Ipad 2 wifi does not charge and itunes does not find my device when pluged into my pc. Help

    You should probably start here and go through all of the troubleshooting steps and then report back if you are still having problems.
    http://support.apple.com/kb/TS1538

  • Safari is not working on the Mac. Internet is fine, mail, App Store etc all working and connecting to Internet fine. Done the latest software update, still not working. When selecting a web address from bookmarks or typing in search bar, partial blue bar.

    Safari is not working on the Mac. Internet is fine. mail, App Store etc all working and connecting to Internet fine. Done the latest software update, still not working. When selecting a web address from bookmarks or typing in search bar, partial blue bar only and coloured wheel appears.

    From the Safari menu bar, select
    Safari ▹ Preferences ▹ Extensions
    Turn all extensions OFF and test. If the problem is resolved, turn extensions back ON and then disable them one or a few at a time until you find the culprit.
    If you wish, you may be able to salvage the malfunctioning extension by uninstalling and reinstalling it. That will revert its settings to the defaults.
    If extensions aren't causing the problem, see below.
    Safari 5.0.1 or later: Slow or partial webpage loading, or webpage cannot be found

  • How do I make sure the photos in my InDesign files are at a high resolution when I send those files to a coworker? (Keeping them as .indd)

    I am leaving my job and we have been uploading all of my InDesign files onto Google Drive to prepare, so that my boss/coworkers can use and access my work. My boss has found that he can't download the files without the photos in the documents turning out super low-res. It's not just the display on his computer (although they do LOOK really awful); they also print in really low-res. I can print and view the SAME files in high-res when I'm working on my computer, and when I export the documents into a PDF, PNG, JPEG, etc., and THEN give him the files, they are at the appropriate resolution. Which has been all fine and dandy, but... Since I'm the only designer on staff, and I am leaving, I am going to need to be able to hand off my documents to my boss/coworkers. Help?!?!?! Thanks!

    If you go to Window>Output>Preflight. It will show you what you are missing in your files.
    You can also go to Window>Links. Find the picture in question and it will give you a status (?) if you are missing any image. At the bottom of that same Links panel you will see tiny icons that say Relink, Go to Link, Update, you can replace or find any that are missing.
    To find out if your images are high res for print, you can go to Window>Info and select the pictures in question. It will give you an effect ppi when you click on your picture. If it's not at least 300 it's not high res.
    After you fix all that, then package the file.

  • MacBook Pro power adapter doesn't show green light when fully charged

    I've had a quick search through the communities and there are a lot of posts about chargers and indicator lights, but I'm not sure I'm really satisfied about my own issue so I thought I'd ask anyway.
    Basically, I bought a spare power adapter (genuine Apple 85W MagSafe2) for my new 15" Retina MacBook Pro in a store the other day, to save me lugging my main adapter to and from work all the time.
    Using it for the first time made me realise that the adapter I got with my MBP behaves slightly differently re: the LED indicators. The new one from the store shows amber until the MBP is fully charged, then solid green once fully charged. This I believe is perfectly normal.
    The charger I got with the MBP shows amber whilst charging, but only shows green very briefly when fully charged and then the indicator goes out completely. OSX (10.8.2) still indicates that it is connected to the power source though, and the battery doesn't drain or anything at this point - it definitely appears to be functioning as expected.
    Aside from this, I can determine no real difference between the two adapters in terms of charging speed or general functionality, they both appear fine.
    I just wondered if anyone else had ever seen this?
    I did reset the MBP's SMC settings too, but it made no difference. I'm inclined to think there isn't an issue with the laptop itself since the new adapter's indicators work exactly as I'd expect, but then again the original adapter seems to function perfectly so I'm wondering if there's just some trivial issue with the green LEDs or something like that.

    Really doesn't matter if anyone else has or has not seen something like what you have. Your original adapter is faulty in one way or another and you should take it in to Apple with your rMBP to show them what is happening and Ask Nicely for a new one that works correctly.

  • My macbook pro i7 (2011 version) has a loud fan and high cpu % when I have Skype on or when I am on Safari. Help please!

    My macbook pro i7 (2011 version) has a loud fan and a high cpu % when I have Skype on or when I am on Safari. My laptop would sometimes freeze for a while and it is usually hot. Has anyone else encounter this problem and know how to fix it? Thanks!

    Skype is a very resource intensive activity...it has been reported on here users are seeing cpu temperatures on the order of 80-85 °C, within the limits of the cpu, but still hot to the touch.
    Make sure nothing else is running so you keep the thermal load down.

  • Password prompts - Exchange 2013 RTM vs. [Outlook 2007 & Outlook 2010] - Fully patched

    Exchange 2013 RTM  - Multi-Tenant
    ExternalClientAuthenticationMethod : Ntlm
    InternalClientAuthenticationMethod : Ntlm
    IISAuthenticationMethods           : {Basic, Ntlm, Negotiate}
    Clients using Outlook Anywhere only, not Exchange domain members.
    1. Windows XP SP3 (fully patched), Outlook 2007 SP3 + Nov 2012 Patch - When launching Outlook prompts for password only once.
    2. Windows 7 (fully patched), Outlook 2010 (fully patched) - When launching Outlook doesn't prompt for password.
    I'm aware of this:
    http://support.microsoft.com/kb/956531
    The goal - Eliminate issue with password prompts for Windows XP.
    Any chance resolving this? CU install? Anything else?
    Thanks.
    Memento Mori

    Hi,
    Based on my experience, the credential issue is mostly likely caused by authentication method.
    And I recommend the following troubleshooting:
    1. Change LmCompatibilityLevel on the windows XP client to a value of 2 or 3:
    a. Click Start, click Run, type regedit in the Open box, and then press ENTER.
    b. Locate and then click the following registry subkey:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\
    c. In the pane on the right side, double-click lmcompatibilitylevel.
    d. In the Value data box, type a value of 2 or 3 that is appropriate for your environment, and then click OK.
    e. Exit Registry Editor.
    f. Restart your computer
    2. Reset the windows credential store.
    If you have any question, please feel free to let me know. 
    Thanks,
    Angela Shi
    TechNet Community Support

  • Still pictures lose resolution when transition added?

    i'm making a slideshow in FCP using still pictures. when i add a disolve, or key frame a crossfade between two pictures the pictures lose their sharpness/resolution. the last frame before the dissolve ends the picture remains sharp, but as soon as the picture comes up by itself it drops to a lower quality. i hope that makes sense.
    the problem only occurs on some of the pictures i scanned, but not all that were scanned (problem doesn't occur with pictures that came straight from a digital file (i.e. a memory card/camera). i scanned the pictures with a resolution setting of 200.
    any ideas with what i'm doing wrong? any thoughts, criticisms, are greatly appreciated, and thanks in advance!

    the clips exhibit the problem both rendered, unrendered, and exported.
    thanks for responding nick!
    oh, and i like where you're from nick, but i couldn't find the answer when i consulted it.
    Message was edited by: awp

  • High latency when only me on the internet!!!!!!!!!...

    why is it that im still getting high latency with just me on the internet not downloading and just playing a game, there are only 30 people in the cabinet out of 100 and ive just noticed the latency has only gotten really high since its gotten windy, also gettting awful packet loss , the engineer also changed the connection at the pole. look at this cable though is it supposed to be this bad when it gets to the house wall ???????? http://gyazo.com/51d69c5c9b34a4230c945ed87733efd3
    speedtest result: http://gyazo.com/d7f9d2b852be797637c4547f33f924ee

    look at these, a bit blury but yeah iphone camera lol had to zoom
    http://gyazo.com/6c8652db116846e0f0d8f0a0a0747c46
    http://gyazo.com/79447e2a61549d0547f44f7f7d6a7ac8
    http://gyazo.com/8ecbcb53fcea2cd323d2d8936ffdd89d

  • Finder is crashing when previewing files

    My finder keeps crashing when previewing files from an external hard drive. It's mov-files and stills(cr2).
    I have files recorded on two separate days. When previewing files day 2 there's no problem but when previewing files from day 1 finder is crashing every time. I have back up of all the files on another drive. On the back up drive there's no problem to preview files.

    That is why I want you to erase it.. so you can get access.. but I cannot trial it for you... I do not have one.. you have to trial it yourself.
    Setup the TC to use Accounts.. not use disk password or device password.. after an erase.
    See if that fixes it.
    See this post for different but maybe related issue.
    https://discussions.apple.com/thread/5146963?tstart=0

  • Can you force ARD to ask permission before control/observing *AND* still be able to push updates/patches?

    Is there a way to force ARD to ask permission before observing/controling a computer AND still be able to push updates/patches to the computer?
    I know we can't be the only ones who have this dilemma so I'm hoping someone has a solution.
    ARD version 3.
    OS 10.6.8 (ARD machine) and 10.6-10.7 client Macs
    Each remotely monitored computer has an admin account that ARD uses to inventory and update the machines. Let's call it ADMIN. Of course each computer also has a local (non-admin) account let's call USER.
    When USER is logged in, we'd like ARD to always ask permission before observing and/or controlling the computer. We found we can replicate this by removing the ADMIN login and password from the info tab of the computer in question as well as turning on the 'Any guest may request permission' setting. Unfortunately we found this also removes the ability of ARD to start a chat session with the computer - even with the chat option checked on in ARD settings (system preferences). To push updates/patches we have to put the ADMIN account information back into computer info tab.
    Basically it boils down to giving the end user the privacy they would like (not being viewed without warning) while they're logged in vs. allowing the IT department to update the computers when necessary.
    With the ADMIN login and password entered into the computer's info tab we're able to observe/control without warning. We changed the client settings for that computer via ARD to always request permission but this didn't work while the ADMIN login and password were still entered in the info tab. Once we removed the information we were prompted to ask permission but that's because we were essentially an unknown guest.
    It appears to be an either/or situation right now. Either you give the user privacy and always ask permission or you give the IT department the rights to observe a machine and push updates. Because once we put the ADMIN information back into the info tab, we can observe without permission again.
    When USER is logged in, always ask permission to control/observe. But still be able to push updates. If ADMIN is logged in or no one is logged in, don't ask to control/observe.
    Has anyone found a workable solution for this question?

    You can take a look at this website and it will give you the command to run that will control the Observe and Control options for the access mode.
    http://support.apple.com/kb/HT2370
    The command is:
    $
    sudo /System/Library/CoreServices/RemoteManagement/ARDAgent.app/Contents/Resources/kickstart -configure -users "THIS IS WHERE YOU PUT THE USERS YOU WANT TO HAVE ACCESS" -access -on -privs -ControlObserve -ObserveOnly -TextMessages

  • How to turn off "find my iphone" when all the buttons are disable about on/off in my icloud account?

    MY APPLE ID AND ICLOUD ACCOUNT HAVE BEEN HACKED COUPLE OF MONTHS AGO. ALL THE CONTENTS OF MY IPHONE HAS REMOVED. SO I HAVE RESTORED MY IPHONE BY USING MY OLD BACKUP. AND MY OLD ICLOUD ACCOUNT HAS RESTORED TO MY IPHONE AGAIN BUT THERE WAS NO ICLOUD ACCOUNT WITH MY EMAIL BECAUSE IT'S BEEN HACKED AND MY APPLE ID HAS BEEN SWITCHED TO HACKER'S EMAIL. SO I WAS NOT ABLE TO DELETE ICLOUD ACCOUNT, TO TURN OFF FIND MY IPHONE OR TO ERASE MY IPHONE. SO I M NOT STILL ABLE. I MEAN ALL THE BUTTONS IN MY ICLOUD ACCOUNT ARE DISABLE TO TAP. I WANNA ERASE MY IPHONE OR ERASE THE ICLOUD ACCOUNT.
    PLEASE HELP ME!!!!
    WAITING FOR YOUR RECOMMENDATIONS...

    According to Apple support, you cannot remove the phone on the device list under "find my iphone" until you turn it off and it goes offline.  (It also says the device will go back on "find my iphone" when it goes online again, which seems to mean you can successfully remove it, but as soon as you turn it back on it will be back on the list, and thus you will not be able to restore it.)  It's a bit of a conundrum.  In my case I couldn't for some reason turn off my phone  with the home/sleep buttons - nothing happens, the phone stays on.  While on a chat with Apple support, they got my iphone offline (I was able to turn it off by pressing the sleep button and swiping where the red "turn off iphone" arrow would have appeared) and removed it from "find my phone", but when I reconnected to itunes it turned on and reappeared in the "find my phone" list.  Luckily, the screen suddenly appeared (it had done this several times yesterday, just briefly), so I was able to turn off "find my device" from the phone.  I was then able to restore.  Unfortunately, this does not answer the question of how to remove the device from "find my iphone" and keep it off while connecting with itunes to restore (unless you have my good fortune of having the screen suddently reappear).  Apple support seemed puzzled that it had reappeared on the device list under "find my iphone".  Time will tell whether the restoration fixes the blank screen issue.

Maybe you are looking for