A vulnerability was found in 7-Zip 21.07 that can be exploited through the 7-Zip Help file. This post will show how to remediate this vulnerability by deleting the 7-zip.chm file. In this post I will show you 2 ways you can accomplish this:
With a MECM (SCCM) configuration item deployment and with Intune script. In this post I will remediate the 7-zip (all versions) 64 bits version with MECM, and only the 21.07 (32 and 64 bits) version with Intune.
Upgrade to MECM version 2203
Update 2203 for Microsoft Endpoint Configuration Manager (MECM) is now available. In this post I will show all the steps you have to take to upgrade your current MECM installation. To install MECM 2203 as an update, you must have MECM version 2010 or later installed. If you check for updates in your console and the update is not available this post also shows how to get it using the early update ring script. I personally would not install the new version when it still is in the early ring on your production environment but it would be suited for a lab or test environment. When the new version is available in the production ring usually there is an hotfix available already so that would be a good version to install on your MECM production.
Create a Central Store for Group Policy ADMX/L files
In this post I will show how you can create a Central Store for Group Policy Administrative Template files.
Upgrade to MECM version 2107
Update 2107 for Microsoft Endpoint Configuration Manager (MECM) current branch is available since 20-8-2021. In this post I will show all the steps you have to take to upgrade your current MECM installation. To install MECM 2107 as an update, you must have MECM version 2002 or later installed.
Restrict signing into 365 Apps with a personal Microsoft account
In this post I will show you how you can restrict users signing into 365 Apps with a personal microsoft account.