{"id":6817,"date":"2020-07-24T13:28:31","date_gmt":"2020-07-24T17:28:31","guid":{"rendered":"https:\/\/kevinjustin.com\/blog\/?p=6817"},"modified":"2020-07-24T13:28:31","modified_gmt":"2020-07-24T17:28:31","slug":"scom-2016-web-console-hot-fix-released","status":"publish","type":"post","link":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/","title":{"rendered":"SCOM 2016 web console hot fix released"},"content":{"rendered":"<figure id=\"attachment_6819\" aria-describedby=\"caption-attachment-6819\" style=\"width: 290px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-6819 size-medium\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg\" alt=\"Burglar stealing a monitor\" width=\"290\" height=\"300\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg 290w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-768x794.jpg 768w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584.jpg 870w\" sizes=\"auto, (max-width: 290px) 85vw, 290px\" \/><\/a><figcaption id=\"caption-attachment-6819\" class=\"wp-caption-text\">Security hotfix for SCOM 2016 web console released before your information is stolen<\/figcaption><\/figure>\n<h1>SCOM 2016 web console hot fix<\/h1>\n<p>Security teams may be contacting you for CVE-2020-1331 vulnerability on the 2016 web console.\u00a0 In my example, the Tenable scanner listed ALL SCOM management group servers &#8211; under SCOM2016\/2019).<\/p>\n<p><span style=\"color: #ff0000;\">NOTE KB does not install on server, so does not show up under &#8216;Installed Updates&#8217; <\/span><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<h1>Background<\/h1>\n<p>HotFix DLL comes with a readme to replace the DLL for the SCOM 2016 WebConsole role<\/p>\n<p>If you don&#8217;t already know this, the roles each get their own directory on your SCOM server<\/p>\n<p><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Annotation-2020-07-24-120307.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-6820\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Annotation-2020-07-24-120307.png\" alt=\"\" width=\"609\" height=\"333\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Annotation-2020-07-24-120307.png 609w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Annotation-2020-07-24-120307-300x164.png 300w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/a><\/p>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">Security scanners run scripts to help validate if system is vulnerable.\u00a0 It is possible that the scanner is just looking for some string for the install of SCOM, NOT the actual role that is vulnerable.<\/p>\n<p>&nbsp;<\/p>\n<p>SCOM 2016 typically installs @\u00a0(&#8216;\\Program Files\\Microsoft System Center 2016&#8217;)<\/p>\n<p>SCOM 2019 typically installs @ (&#8216;\\Program Files\\Microsoft System Center&#8217;)<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<h1>Identify SCOM roles<\/h1>\n<p>Open PowerShell window to identify roles<\/p>\n<p><span style=\"color: #0000ff;\">cd &#8220;D:\\Program Files\\Microsoft System Center 2016\\Operations Manager&#8221; <\/span><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<h1>Resolve Web Console vulnerability<\/h1>\n<h3>High level steps<\/h3>\n<p>Download the KB <a href=\"https:\/\/download.microsoft.com\/download\/2\/c\/2\/2c24ee98-49b3-48d1-81ad-d741ca81be10\/SCOM2016HotfixKB4563076.EXE\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a><\/p>\n<p>Execute KB<\/p>\n<p>Copy dll and readme file<\/p>\n<p>Backup DLL and replace<\/p>\n<p>Reboot server<\/p>\n<p>Contact Security Team to re-scan server<\/p>\n<p>&nbsp;<\/p>\n<h1>Mitigate vulnerability<\/h1>\n<p>Download the KB <a href=\"https:\/\/download.microsoft.com\/download\/2\/c\/2\/2c24ee98-49b3-48d1-81ad-d741ca81be10\/SCOM2016HotfixKB4563076.EXE\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a><\/p>\n<p>Extract downloaded the KB<\/p>\n<p>Click Run to extract, and list extraction path<\/p>\n<figure id=\"attachment_6822\" aria-describedby=\"caption-attachment-6822\" style=\"width: 613px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFix.png\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-6822 size-full\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFix.png\" alt=\"Click Run for Security Warning pop-up\" width=\"613\" height=\"400\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFix.png 613w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFix-300x196.png 300w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/a><figcaption id=\"caption-attachment-6822\" class=\"wp-caption-text\">Click Run for Security Warning pop-up<\/figcaption><\/figure>\n<p>Copy Windows Explorer Path you want to extract to, and paste in the path<\/p>\n<p><strong>Example <\/strong><\/p>\n<p>S:\\MonAdmin\\MSDN images\\SCOM\\2016\\WebConsole HotFix<\/p>\n<figure id=\"attachment_6823\" aria-describedby=\"caption-attachment-6823\" style=\"width: 364px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFixPath.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-6823\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFixPath.png\" alt=\"Enter path to extract Hot Fix\" width=\"364\" height=\"141\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFixPath.png 364w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ExtractHotFixPath-300x116.png 300w\" sizes=\"auto, (max-width: 364px) 85vw, 364px\" \/><\/a><figcaption id=\"caption-attachment-6823\" class=\"wp-caption-text\">Extract Hot Fix<\/figcaption><\/figure>\n<p>&nbsp;<\/p>\n<p>Copy current DLL &amp; replace with hotfix DLL<\/p>\n<p>Open PowerShell window (as admin)<\/p>\n<p># Backup DLL<\/p>\n<p># Change Drive letter if you hopefully installed SCOM on D: drive (non-system drive)<\/p>\n<p><span style=\"color: #0000ff;\">copy &#8220;C:\\Program Files\\Microsoft System Center 2016\\Operations Manager\\WebConsole\\MonitoringView\\bin\\Microsoft.EnterpriseManagement.OperationsManager.MonitoringViews.dll&#8221;\u00a0 &#8220;C:\\Program Files\\Microsoft System Center 2016\\Operations Manager\\WebConsole\\MonitoringView\\bin\\Microsoft.EnterpriseManagement.OperationsManager.MonitoringViews-old.dll&#8221;<\/span><\/p>\n<p># Replace DLL<\/p>\n<p><span style=\"color: #0000ff;\">copy &#8220;C:\\MonAdmin\\Microsoft*.dll&#8221; &#8220;C:\\Program Files\\Microsoft System Center 2016\\Operations Mana<\/span><br \/>\n<span style=\"color: #0000ff;\">ger\\WebConsole\\MonitoringView\\bin&#8221;<\/span><\/p>\n<p>&nbsp;<\/p>\n<p># Verify<\/p>\n<p><span style=\"color: #0000ff;\">cd &#8220;D:\\Program Files\\Microsoft System Center 2016\\Operations Manager\\WebConsole\\MonitoringView \\bin&#8221;<\/span><\/p>\n<p><span style=\"color: #0000ff;\">gci Microsoft.EnterpriseManagement.Operations*.dll <\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Sample screenshot from Windows Explorer view of Bin directory for replaced DLL &#8211; Same size, only timestamp changes July Page 4<\/p>\n<figure id=\"attachment_6824\" aria-describedby=\"caption-attachment-6824\" style=\"width: 766px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/HotFixCopied.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-6824\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/HotFixCopied.png\" alt=\"Windows Explorer window showing DLL's\" width=\"766\" height=\"111\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/HotFixCopied.png 766w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/HotFixCopied-300x43.png 300w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 984px) 61vw, (max-width: 1362px) 45vw, 600px\" \/><\/a><figcaption id=\"caption-attachment-6824\" class=\"wp-caption-text\">Windows Explorer window showing DLL&#8217;s<\/figcaption><\/figure>\n<p>Reboot server<\/p>\n<p>&nbsp;<\/p>\n<h1>Test WebConsole functionality<\/h1>\n<p>Verify from SCOM Console &gt; Administration Tab &gt; Settings &gt; Web<\/p>\n<figure id=\"attachment_6828\" aria-describedby=\"caption-attachment-6828\" style=\"width: 1000px\" class=\"wp-caption alignnone\"><a href=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ConsoleURL.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-6828\" src=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ConsoleURL.png\" alt=\"Find Console URL\" width=\"1000\" height=\"706\" srcset=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ConsoleURL.png 1000w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ConsoleURL-300x212.png 300w, https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/ConsoleURL-768x542.png 768w\" sizes=\"auto, (max-width: 709px) 85vw, (max-width: 909px) 67vw, (max-width: 1362px) 62vw, 840px\" \/><\/a><figcaption id=\"caption-attachment-6828\" class=\"wp-caption-text\">Find Console URL<\/figcaption><\/figure>\n<p><strong>Example <\/strong><\/p>\n<p><span style=\"color: #0000ff;\">http:\/\/16ms01\/OperationsManager<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Contact Security Team to re-scan SCOM asset(s)<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<h1>References<\/h1>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">CVE-2020-1331 <a href=\"https:\/\/portal.msrc.microsoft.com\/en-US\/security-guidance\/advisory\/CVE-2020-1331\">https:\/\/portal.msrc.microsoft.com\/en-US\/security-guidance\/advisory\/CVE-2020-1331<\/a><\/p>\n<p>&nbsp;<\/p>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">Microsoft Support article<\/p>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\"><a href=\"https:\/\/community.tenable.com\/s\/question\/0D53a000074LGapCAG\/plugin-137369-security-updatesfor-microsoft-system-center-operations-manager\">https:\/\/support.microsoft.com\/en-us\/help\/4566040\/prevent-javascript-injection-in-operations-manager-2016-web-console<\/a><\/p>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">Tenable forum post <a href=\"https:\/\/community.tenable.com\/s\/question\/0D53a000074LGapCAG\/plugin-137369-security-updatesfor-microsoft-system-center-operations-manager\">https:\/\/community.tenable.com\/s\/question\/0D53a000074LGapCAG\/plugin-137369-security-updatesfor-microsoft-system-center-operations-manager<\/a><\/p>\n<p>&nbsp;<\/p>\n<p style=\"margin: 0in; font-family: Calibri; font-size: 11.0pt;\">\n","protected":false},"excerpt":{"rendered":"<p>SCOM 2016 web console hot fix Security teams may be contacting you for CVE-2020-1331 vulnerability on the 2016 web console.\u00a0 In my example, the Tenable scanner listed ALL SCOM management group servers &#8211; under SCOM2016\/2019). NOTE KB does not install on server, so does not show up under &#8216;Installed Updates&#8217; &nbsp; &nbsp; Background HotFix DLL &hellip; <a href=\"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;SCOM 2016 web console hot fix released&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2,5,530],"tags":[538,535,342,349,497,364,505,540,539,536,537],"class_list":["post-6817","post","type-post","status-publish","format-standard","hentry","category-administration","category-best-practice","category-scom","tag-cve-2020-1331","tag-kb4566040","tag-scom","tag-scom-2016","tag-scom-2019","tag-scom2016","tag-scom2019","tag-security-scanner","tag-tenable","tag-web-console","tag-webconsole"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog<\/title>\n<meta name=\"description\" content=\"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\/2019 server roles.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog\" \/>\n<meta property=\"og:description\" content=\"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\/2019 server roles.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/\" \/>\n<meta property=\"og:site_name\" content=\"Kevin Justin&#039;s Blog\" \/>\n<meta property=\"article:published_time\" content=\"2020-07-24T17:28:31+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg\" \/>\n<meta name=\"author\" content=\"WordPress Administrator\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"WordPress Administrator\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/\"},\"author\":{\"name\":\"WordPress Administrator\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/#\\\/schema\\\/person\\\/3d7a90f4430bef43134eaa0a7e2cd508\"},\"headline\":\"SCOM 2016 web console hot fix released\",\"datePublished\":\"2020-07-24T17:28:31+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/\"},\"wordCount\":494,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/Burglar_3457584-290x300.jpg\",\"keywords\":[\"CVE-2020-1331\",\"KB4566040\",\"SCOM\",\"scom 2016\",\"scom 2019\",\"scom2016\",\"scom2019\",\"security scanner\",\"tenable\",\"web console\",\"webconsole\"],\"articleSection\":[\"Administration\",\"Best Practice\",\"SCOM\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/\",\"url\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/\",\"name\":\"SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/Burglar_3457584-290x300.jpg\",\"datePublished\":\"2020-07-24T17:28:31+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/#\\\/schema\\\/person\\\/3d7a90f4430bef43134eaa0a7e2cd508\"},\"description\":\"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\\\/2019 server roles.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#primaryimage\",\"url\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/Burglar_3457584.jpg\",\"contentUrl\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/Burglar_3457584.jpg\",\"width\":870,\"height\":900},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/2020\\\/07\\\/24\\\/scom-2016-web-console-hot-fix-released\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SCOM 2016 web console hot fix released\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/\",\"name\":\"Kevin Justin&#039;s Blog\",\"description\":\"Operational monitoring tools including System Center, Azure Monitor\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/#\\\/schema\\\/person\\\/3d7a90f4430bef43134eaa0a7e2cd508\",\"name\":\"WordPress Administrator\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g\",\"caption\":\"WordPress Administrator\"},\"sameAs\":[\"https:\\\/\\\/kevinjustin.com\"],\"url\":\"https:\\\/\\\/kevinjustin.com\\\/blog\\\/author\\\/wordpress_admin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog","description":"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\/2019 server roles.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/","og_locale":"en_US","og_type":"article","og_title":"SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog","og_description":"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\/2019 server roles.","og_url":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/","og_site_name":"Kevin Justin&#039;s Blog","article_published_time":"2020-07-24T17:28:31+00:00","og_image":[{"url":"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg","type":"","width":"","height":""}],"author":"WordPress Administrator","twitter_card":"summary_large_image","twitter_misc":{"Written by":"WordPress Administrator","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#article","isPartOf":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/"},"author":{"name":"WordPress Administrator","@id":"https:\/\/kevinjustin.com\/blog\/#\/schema\/person\/3d7a90f4430bef43134eaa0a7e2cd508"},"headline":"SCOM 2016 web console hot fix released","datePublished":"2020-07-24T17:28:31+00:00","mainEntityOfPage":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/"},"wordCount":494,"commentCount":0,"image":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#primaryimage"},"thumbnailUrl":"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg","keywords":["CVE-2020-1331","KB4566040","SCOM","scom 2016","scom 2019","scom2016","scom2019","security scanner","tenable","web console","webconsole"],"articleSection":["Administration","Best Practice","SCOM"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/","url":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/","name":"SCOM 2016 web console hot fix released - Kevin Justin&#039;s Blog","isPartOf":{"@id":"https:\/\/kevinjustin.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#primaryimage"},"image":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#primaryimage"},"thumbnailUrl":"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584-290x300.jpg","datePublished":"2020-07-24T17:28:31+00:00","author":{"@id":"https:\/\/kevinjustin.com\/blog\/#\/schema\/person\/3d7a90f4430bef43134eaa0a7e2cd508"},"description":"Install KB4566040 to resolve the SCOM2016 Web Console CVE-2020-1331 vulnerability. Scan tools may show false positive for ALL SCOM2016\/2019 server roles.","breadcrumb":{"@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#primaryimage","url":"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584.jpg","contentUrl":"https:\/\/kevinjustin.com\/blog\/wp-content\/uploads\/2020\/07\/Burglar_3457584.jpg","width":870,"height":900},{"@type":"BreadcrumbList","@id":"https:\/\/kevinjustin.com\/blog\/2020\/07\/24\/scom-2016-web-console-hot-fix-released\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/kevinjustin.com\/blog\/"},{"@type":"ListItem","position":2,"name":"SCOM 2016 web console hot fix released"}]},{"@type":"WebSite","@id":"https:\/\/kevinjustin.com\/blog\/#website","url":"https:\/\/kevinjustin.com\/blog\/","name":"Kevin Justin&#039;s Blog","description":"Operational monitoring tools including System Center, Azure Monitor","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/kevinjustin.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/kevinjustin.com\/blog\/#\/schema\/person\/3d7a90f4430bef43134eaa0a7e2cd508","name":"WordPress Administrator","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fca865cc5df90a25ae9533b1d9dea567a78c7469dc3202a376c8d117a0eaea11?s=96&d=mm&r=g","caption":"WordPress Administrator"},"sameAs":["https:\/\/kevinjustin.com"],"url":"https:\/\/kevinjustin.com\/blog\/author\/wordpress_admin\/"}]}},"_links":{"self":[{"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/posts\/6817","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/comments?post=6817"}],"version-history":[{"count":4,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/posts\/6817\/revisions"}],"predecessor-version":[{"id":6830,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/posts\/6817\/revisions\/6830"}],"wp:attachment":[{"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/media?parent=6817"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/categories?post=6817"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kevinjustin.com\/blog\/wp-json\/wp\/v2\/tags?post=6817"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}