list of products, MDE Plan 2 would detect as vulnerable?

AndAuf 26 Reputation points
2023-07-31T12:35:54.7133333+00:00

Is there a source to check, whether a specific product would be recognized as vulnerable in MDEp2?

e.g. I have the need to install Pandoc. Would MDEp2 warn me, if there is a publicly known vulnerability/exploit for my installations just like it does for vlc, openssl,... you name it.

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,840 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Andrew Blumhardt 9,776 Reputation points Microsoft Employee
    2023-07-31T14:09:36.56+00:00

    There is no list or pre-install verification. Blocking is based on Microsoft's threat intelligence and AV signatures. MDE admins can add an allow or allow-with-warning option as a custom indicator. This would override any Microsoft blocks if encountered.

    https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/manage-indicators

    0 comments No comments