Vulnerable software : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion UBR - contains 4771

MbaMgh 21 Reputation points
2022-02-26T01:27:46.057+00:00

Hello Team,

I'm running a Windows server 2016, Standard Edition in which I lunch a vulnerability scanning by Nexpose. The vulnerability rapport generated a large number of CVE, that should be fixed by two KB :
KB5009546 (Not installed when running Get-HotFix -Id KB5009546 )
KB5008207(Already installed when running Get-HotFix KB5008207 )
All CVE addresed by those KB show a description message "Vulnerable OS: Microsoft Windows Server 2016 Standard Edition 1607 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion UBR - contains 4771"

So i feel confused about this message and the way I should addressed to fix those vulnerabilities.

Does the install of the KB KB5009546 will fix the issue ?

Thank you !

Windows for business | Windows Server | User experience | Other
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Ankur Arora 1 Reputation point
    2022-07-15T11:01:23.487+00:00

    Yes thats right with more latest LCU that should also be taken care of .

    0 comments No comments

  2. Ant 10 Reputation points
    2024-01-30T07:27:01.0133333+00:00

    I have the same issue but with Windows 10 22H2. December updates installed but Rapid7 InsightVM still shows as vulnerable:

     * HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion
        * UBR - contains 3570
    

    How do I fix this? Our company uses a n-1 view so, we can't install January's patches just yet.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.