
The vendors usually came up with a patch for these vulnerabilities, but many firms do not have the policies in place to ensure they are pushed out to each endpoint, according to Bit9 chief technology officer Harry Sverdlove.
"We recommend all IT shops establish policies so they clearly understand what applications are allowed and what they should do if vulnerabilities are discovered," he advised.
"They should also take an inventory of what is running – it’s fine to have a policy but another thing to monitor."
Sverdlove also advised firms to put in place controls that prevent applications with vulnerabilities from running in the corporate environment.