Verify that critical patches are installed within one month and all other patches within 3 months |
If the most recent patches are not implemented on the endpoints as soon as possible, an attacker can use these exploits to attack or disable such endpoints, gain access to sensitive data stored on endpoints, or use compromised endpoints as a stepping stone to expanding the attack on other critical systems.
This Action1 query gathers status of patch installation across the entire network of endpoints and verifies, per PCI DSS mandates, that all vendor-supplied critical patches are be deployed within 30 days. If any critical patches are missing, such endpoints are flagged as non-compliant and Action1 brings them to your attention. Non-critical patches must also be deployed, but PCI DSS standard is vague in terms of timeframe (this query uses 3 months by default).
Sign-up for Action1 Free Edition to receive real-time alerts and view instant data from your endpoints, such as alert on 6.2.b: Timely Deployment of Vendor-Supplied Patches created, deleted or modified or run live or scheduled queries with the ability to export to CSV or Excel. Action1 Endpoint Security Platform is entirely SaaS, with online web interface (no management tools to install) and it has zero cost for basic functionality. Running in the Cloud, Action1 discovers all of your endpoints in seconds and you can query your entire network in plain English.
Endpoint configuration management in the Cloud
Manage endpoint configuration using plain English from the Cloud. Such as type 'Windows services' or 'reboot computer'.
Get results instantly from live systems and run automated actions.
Keywords: Verify that critical patches are installed within one month and all other patches within 3 months,Action1 6.2.b: Timely Deployment of Vendor-Supplied Patches.
Find more information on 6.2.b: Timely Deployment of Vendor-Supplied Patches at Microsoft TechNet.