It looks like this week has been a well-deserved break from the reliability issues that plagued April’s Microsoft patches, but next week brings another week of upcoming security patches. Make sure to register for our May Patch Tuesday webinar to get the latest developments on these upcoming updates.

Microsoft Vulnerabilities

While there were no high-profile security fixes released this week, two notable Microsoft vulnerabilities did make the news.

First, a new Exchange backdoor was discovered by ESET this week that’s notable in its complexity. According to ZDNet, ESET discovered the backdoor, named LightNeuron, which was designed specifically for Exchange and works as a message transfer agent. This allows the attacker to have the complete ability to intercept, redirect, or edit incoming or outgoing content. Alarmingly enough, ESET says that the APT group “Turla” has been using this backdoor for almost five years! While there’s no known fix for this malware, ESET did release a whitepaper with further explanations and removal instructions.

A recently remediated SharePoint vulnerability is now under active attack according to AT&T Alien Labs researchers. According to DarkReading, Microsoft SharePoint servers are being exploited via the China Chopper web shell. Once the attacker had compromised the server, attackers then used PowerShell scripts to gain further access to establish internal monitoring of the network. The vulnerability under attack is CVE-2019-0604, which was initially fixed during March Patch Tuesday, but was further remediated during April Patch Tuesday with additional patches.

Third-Party Updates

Here are the third-party updates released by our supported vendors this week. While the week lacked any major CVEs, make sure to review the list so you may include these in your next patching cycle.

Software Title

Ivanti ID

Ivanti KB

Blue Jeans 2.12.529.0

JEANS-016

QBJN2125290

DropBox 72.4.136

DROPBOX-108

QDROPBOX724136

Evernote 6.18.4.8489

ENOT-018

QENOT61848489

FileZilla Client 3.42.1

FILEZ-089

QFILEZ3421X86

Firefox 66.0.5

FF19-010

QFF6605

Firefox ESR 60.6.3

FFE19-6063

QFFE6063

GoTo Opener 1.0.494

GOTOO-002

QGTO10494

LibreOffice 6.1.6.3

LIBRE-111

QLIBRE6163

LogMeIn 4.1.12572

LMI-017

QLMI4112572

NVivo 12.4.0.741

NVIVO-004

QNVIVO1240741

Opera 60.0.3255.84

OPERA-213

QOP600325584

PeaZip 6.8.0

PZIP-015

QPZIP680

Plex Media Server 1.15.4.994

PLXS-035

QPLXS1154994

Royal TS 5.00.61707.0

RTS5-007

QRTS500617070

Reduce risks of cybersecurity threats