Notification

Icon
Error

7-Zip Arbitrary Code Execution Vulnerability

Posted: Friday, May 4, 2018 2:19:34 PM(UTC)
Esben.D

Esben.D

Member Administration Original PosterPosts: 1,982
6
Like
An arbitrary code execution vulnerability has recently been discovered in 7-Zip. By exploiting this arbitrary code execution, depending on the privileges of the user, an attacker can install programs; view, change, or delete data; or create new accounts with full user rights.
This topic outlines how you can deploy the fixed 7-Zip version. Using a report to check which machines have a vulnerable version of 7-Zip and the Lansweeper deployment module you can detect and update your vulnerable machines.

To make use of this guide make sure the following are in order:
If the requirements are in order, you can mass check and update all your vulnerable assets by doing the following:

1) Follow the instructions found in the Report Center to add the report to your Lansweeper installation.

2) Go to Deployment\Security Options and set up your package share and share user.

3) Follow the instructions found in the Installer Center to add the deployment to your Lansweeper installation and patch your assets.


7-Zip vulnerability
Esben.D
#1Esben.D Member Administration Original PosterPosts: 1,982  
posted: 5/4/2018 2:20:32 PM(UTC)
If you have any questions regarding the report or deployment package, please contact us via email at support@lansweeper.com

Active Discussions

Lansweeper Wake on Lan Issues
by  miharix   Go to last post Go to first unread
Last post: Yesterday at 6:23:13 PM(UTC)
Lansweeper Export Ticket List
by  Yassine Dakir  
Go to last post Go to first unread
Last post: Yesterday at 12:29:07 PM(UTC)
Lansweeper AWS scanning appears to only cover 1 account
by  Vincent Pollock   Go to last post Go to first unread
Last post: 2/23/2021 9:26:04 PM(UTC)
Lansweeper TCP 445 to external IP during LS scan?
by  jvogler  
Go to last post Go to first unread
Last post: 2/23/2021 8:02:06 PM(UTC)
Lansweeper Use Wildcard for User Name in Allowed Administrator
by  FP  
Go to last post Go to first unread
Last post: 2/22/2021 10:33:25 PM(UTC)
Lansweeper Helpdesk report for tickets for all on one reason
by  TimHolmes1973   Go to last post Go to first unread
Last post: 2/22/2021 7:22:56 PM(UTC)
Lansweeper Issues Updating
by  FrankSc  
Go to last post Go to first unread
Last post: 2/22/2021 11:06:50 AM(UTC)