Block remote EFSRPC functionality with RPC Filters If Microsoft Encrypted File System Remote Protocol (MS-EFSRPC) is not required, administrators should block the remote EFSRPC functionality on the vulnerable host using RPC filters. Create a text file with the...
Insecure Java JMX Configuration
Table of Contents Option 1: Disable JMX Option 2: Configure a Whitelist Firewall Option 3: Configure User Authentication on the JMX Server Option 1: Disable JMX JMX is only required if you need remote management and monitoring of a Java-based application or the Java...
Netlogon Elevation of Privilege Vulnerability
Apply the February 9, 2021 Security Patch to the Host Microsoft released a patch on February 9, 2021 addressing this vulnerability. To install it, apply the latest security updates on every Domain Controller. For more information, see CVE-2020-1472 Security Bulletin
Remote Desktop Services Remote Code Execution
Table of Contents Option 1: Patch the Host Option 2: Enable NLA on the Host Option 1: Patch the Host Microsoft released patches, KB4493471 and KB4493472, addressing this vulnerability. Install one of the patches from the Microsoft Update Catalog for the corresponding...
Subdomain Takeover
Table of Contents Option 1: Remove Dangling CNAME Option 2: Update CNAME Option 1: Remove Dangling CNAME If the subdomain is no longer in use, then from your DNS zone, remove the subdomain’s DNS record. Review application code and configuration for references to...
VMware vCenter vROPS Plugin Remote Code Execution Vulnerability
Table of Contents Option 1: Upgrade vCenter Instance Option 2: Disable Plugins on Virtual Server Appliance Deployments Option 3: Disable Plugins on Windows-based vCenter Server Deployments Validation Option 1: Upgrade your vCenter Instance Upgrade the major release...
HP iLO Web API Remote Code Execution
HPE has provided software updates to resolve the vulnerability in HPE Integrated Lights-out 4 (iLO 4). Upgrade to HPE Integrated Lights-out 4 (iLO 4) firmware version 2.53 or newer. The firmware is available to download here NOTE: The iLO for Moonshot 2.56 firmware is...
VMware vCenter vSAN Health Check Plugin Remote Code Execution Vulnerability
Table of Contents Option 1: For vCenter Server Appliances Option 2: For Windows-based vCenter Servers Option 1: For vCenter Server Appliances Connect to the vCSA using an SSH session and root credentials. Backup...
Insecure IPMI Implementation
Table of Contents Option 1: Disable the IPMI Service Option 2: Implement a Strong Password Option 3: Implement a Strong Password Policy Option 4: Implement a Configuration Management Policy This weakness is the result of a flaw in the protocol design. As a result,...
Group Policy Preference Password Elevation of Privilege Vulnerability
Table of Contents: Option 1: Patch the Host Option 2: Remove Old or Unused Policies Option 1: Patch the Host Microsoft released a patch, KB2928120, addressing this vulnerability. To install it, download the patch from the MS14-025 Security Bulletin for the...
How can NodeZero help you?
Let our experts walk you through a demonstration of NodeZero, so you can see how to put it to work for your company.