Skip to main content

Detected vulnerability CVE-2019-5922

Thread needs solution

Hello,

I'm using Cyber Protect Home Office, and the protection module always reports vulnerability CVE-2019-5922. This vulnerability refers to an old version of the installer for Microsoft Teams. Cyber Protect first detected this vulnerability in December 2020, and I have never been able to clear it.

Further reading on that vulnerability ID says that it is with Teams installers prior to version 1.3.00.362. I have long since updated to the current version of Teams, and removed all instances of the installer package that I can find on my computer.

Is there a way to definitively get rid of this detection in Cyber Protect, or perhaps get it to show the path to what it detected so I can manually remove it? I would just like to see a clean vulnerability report :)

Thanks!

0 Users found this helpful

welcome to these public User Forums.

From the information I can see for this vulnerability check if you have any files at:

%userprofile%\AppData\Local\Microsoft\Teams  or in sub-folders from here?

This is the area that the exploit for Teams was focussed on and that path does not exist on my own Win 11 system.

That path does exist on my system (Windows 10) because I installed Teams.

Have you tried to completely uninstall Teams and then reinstall?

In the path Steve provided look further in folder \Packages for leftovers.  The RELEASES file can be opened with Notepad.