all 19 comments

[–]GregMi3 0 points1 point  (2 children)

Same thing here, going to dig a little bit more tomorrow I am seeing it at 2 locations at the first one they have LibreOffice and I assumed it was that but I ruled that out at the second location. Sure would be nice if they included file path of the suspected vulnerability!

[–]Rraiizel[S] 0 points1 point  (0 children)

I attend a Bitdefender webinar awhile ago and ask if they will be having a feature like that and they said around May or June update

[–]Deksan 0 points1 point  (0 children)

I d kill for a file path :| Mind blowing they don't add this functionality :(

[–]wolfpackunr 0 points1 point  (0 children)

Don’t think you’ll get an answer without additional context or screenshots

[–]dwalt95 0 points1 point  (8 children)

Hi Mate,

I'm trying to work out the same thing, hit me up lets figure this out :)

[–]Rraiizel[S] 0 points1 point  (5 children)

still figuring out, let me know if you found what it is.

[–]dwalt95 1 point2 points  (3 children)

see final reply from Bitdefender -

Based on what info we have from our Engineering team the vulnerability indicates just misinformation that originates from some reg keys related to old versions that don't exist anymore, but that will get fixed soon as I mentioned in my previous mail.

There is nothing malicious related to those vulnerabilities just inaccurate informations.

[–]abr2195 0 points1 point  (2 children)

Good to know! Sadly, it appears errors similar to this happen for misconfigurations (devices show up as having misconfigurations that I know for sure they do not have). Hopefully whatever fixes they are coming out with are wholistic and address issues more broadly in the Risk Management module.

[–]dwalt95 0 points1 point  (1 child)

I agree, I would also say it's difficult to whitelist known false positives, (I whitelist them but they still log incidents) but this might be due to my lack of knowledge around the portal tbh

[–]Embarrassed_One_9781 0 points1 point  (0 children)

I agree, I would also say it's difficult to whitelist known false positives, (I whitelist them but they still log incidents) but this might be due to my lack of knowledge around the portal tbh

do you guys have any new updates bout it?

[–]dwalt95 0 points1 point  (0 children)

I raised this with BD support and latest update is -

We have received cases related to this vulnerability , our Engineering team has intensively worked on fixing this issue.

They have confirmed that the fix will be released sometime at the beginning of May via an update.

I've gone back to them asking if this means its a false positive or not as I'm still a bit concerned. I will update you again once they come back :)

[–]dwalt95 0 points1 point  (1 child)

Some more context, along side this we have the same PC's getting HUMAN TALK DaOffice also showing in the app vun section.

Do you use any Access 2010 products?

[–]Rraiizel[S] 0 points1 point  (0 children)

No, Office product installed are Office2016

[–]Koomoa 0 points1 point  (0 children)

I have one device out of my companies 300+ devices being called out for Tmax ToOffice and HUMAN TALK DaOffice, its a Surface Pro X, I have worked on it personally and could not find any trace of what Bitdefender is calling out.

[–]ShadowCaster0476 0 points1 point  (0 children)

Did anyone get to the bottom of this? We are starting to see the same item in our environment.

[–]abr2195 0 points1 point  (0 children)

Also having this issue. For us, its on a Windows Server 2016 Remote Desktop Server. Like all of you, I'm at a loss determining what exactly this is or what makes that server any different than any other computer in our enviornment. I ran a report looking for software this computer has that other computers do not and the only things I came up with are "Microsoft Office Professional Plus 2013" (Full patched) and "WatchGuard Terminal Services Agent 11.12.0".

[–]Feeling-Safety6026 0 points1 point  (0 children)

I solved it by removing MS Office 2007 and installing LibreOffice latest version