NetDocuments' Response to the Internet Explorer Security News


This post is describing the recent IE issues. Even though it is not specific to NetDocuments, we have had a number of customers ask us about this, so we are providing this information as a resource.

An Internet Explorer exploit was discovered last weekend and Microsoft provided a patch yesterday to resolve the issue with IE versions 10 and 11.

NetDocuments provides support for several browsers, one of which is Internet Explorer. Because of the issue, users who cannot update to the newer browsers where a patch has been made available by Microsoft, there are some other suggestions that Microsoft has provided as workarounds which are listed below. Of course using another supported browser is also an option for users.

The easiest solution to avoid the issue is to disable Internet Explorer's Flash plug-in.

According to Microsoft, the only way that an attacker could exploit this would be to "host a specially crafted website that is designed to exploit this vulnerability through Internet Explorer and then convince a user to view the website. The attacker could also take advantage of compromised websites and websites that accept or host user-provided content or advertisements. These websites could contain specially crafted content that could exploit this vulnerability. In all cases, however, an attacker would have no way to force users to view the attacker-controlled content. Instead, an attacker would have to convince users to take action, typically by getting them to click a link in an email message or in an Instant Messenger message that takes users to the attacker's website, or by opening an attachment sent through email."

https://technet.microsoft.com/library/security/2963983

The best defense would be to make sure your users are not clicking on any unusual links or attachments and that they are not visiting any questionable websites. Using NetDocuments will not increase the risk of being affected by this issue.

Microsoft has created a fix for the issue described here:

https://technet.microsoft.com/en-us/library/security/2755801.aspx

Here are some tips for using ND in non-IE browsers:

http://help.netdocuments.com/netdocuments-browsers/

 


Author: @marriottmurdock




Contact Us


USA

UK

AU

info@netdocuments.com

Support Community

Request Demo