Insecure Java JMX Configuration

Table of Contents Option 1: Disable JMX Option 2: Configure a Whitelist Firewall Option 3: Configure User Authentication on the JMX Server Option 1: Disable JMX JMX is only required if you need remote management and monitoring of a Java-based application or the Java...

Netlogon Elevation of Privilege Vulnerability

Apply the February 9, 2021 Security Patch to the Host Microsoft released a patch on February 9, 2021 addressing this vulnerability. To install it, apply the latest security updates on every Domain Controller. For more information, see CVE-2020-1472 Security Bulletin

Remote Desktop Services Remote Code Execution

Table of Contents Option 1: Patch the Host Option 2: Enable NLA on the Host Option 1: Patch the Host Microsoft released patches, KB4493471 and KB4493472, addressing this vulnerability. Install one of the patches from the Microsoft Update Catalog for the corresponding...

Subdomain Takeover

Table of Contents Option 1: Remove Dangling CNAME Option 2: Update CNAME Option 1: Remove Dangling CNAME If the subdomain is no longer in use, then from your DNS zone, remove the subdomain’s DNS record. Review application code and configuration for references to...

HP iLO Web API Remote Code Execution

HPE has provided software updates to resolve the vulnerability in HPE Integrated Lights-out 4 (iLO 4). Upgrade to HPE Integrated Lights-out 4 (iLO 4) firmware version 2.53 or newer. The firmware is available to download here NOTE: The iLO for Moonshot 2.56 firmware is...

Insecure IPMI Implementation

Table of Contents Option 1: Disable the IPMI Service Option 2: Implement a Strong Password Option 3: Implement a Strong Password Policy Option 4: Implement a Configuration Management Policy This weakness is the result of a flaw in the protocol design. As a result,...

How can NodeZero help you?

Let our experts walk you through a demonstration of NodeZero, so you can see how to put it to work for your company.