﻿

## Apex Technology Blog

Apex Technology has been serving the Carolinas since 1998, providing IT Support such as technical helpdesk support, computer support and consulting to small and medium-sized businesses.

 [ Categories ](https://trustapex.directivesites.com/blog/categories "Categories")

 [ Tags ](https://trustapex.directivesites.com/blog/tags "Tags")

 [ Categories:  All Categories ](https://trustapex.directivesites.com/javascript:void(0); "Categories")

 Search...Suggested keywords

 [  x ](https://trustapex.directivesites.com/javascript:void(0);)

 <a class="eb-image-viewport"></a>

#  Windows Suffering from MSHTML Exploit

  [Apex Technology Blog ](https://trustapex.directivesites.com/blog/categories/blog)   [Security](https://trustapex.directivesites.com/blog/categories/security)

  [Tim Campbell](https://trustapex.directivesites.com/blog/blogger/tim-campbell)

  Monday, 06 December 2021

   [ 0 Comments ](https://trustapex.directivesites.com/blog/windows-suffering-from-mshtml-exploit#comments)

 [ ![Windows Suffering from MSHTML Exploit](//trustapex.directivesites.com/images/easyblog_shared/December_2021/12-06-21/b2ap3_large_MSHTML_293611736_400.jpg) ](//trustapex.directivesites.com/images/easyblog_shared/December_2021/12-06-21/MSHTML_293611736_400.jpg "Windows Suffering from MSHTML Exploit")

A vulnerability in Microsoft’s MSHTML browser engine has been discovered and tracked by Kaspersky. It is being exploited all over the world right now. How can you avoid this vulnerability so that it doesn’t affect your business? Let’s find out.

## What is MSHTML?

MSHTML is the browser engine that is found within the personal computer and server unit versions of Windows. The vulnerability itself can be found in just about any device that runs most versions of the Windows operating system. Industries most impacted by this vulnerability include telecommunications, medical technology, industry, energy, banking, and research and development.

## How Does the Exploit Work?

The vulnerability itself is easy to exploit, as all it needs is for someone to send an infected Office file to a user. Once the file is downloaded, it runs code and executes the payload, infecting the target machine. Kaspersky claims that attackers can then use ActiveX to perform even more attacks, like downloading backdoors onto the infected system. This is particularly devastating if the hacker can gain administrative privileges by attacking, say, the network or system administrator for your systems.

## What Can Be Done About It?

MSHTML has been patched by Microsoft, but if you have yet to download the patch, you can simply not download the infected Microsoft Office document. Plus, you should never download a suspicious or unknown file in the first place. Now, applying patches and not downloading suspicious files might sound like best practices—and they are—so make sure that you are following them and not putting your company at unnecessary risk.

By working with Apex Technology, you can ensure that patches get applied in a timely manner. Furthermore, you can get all of the security solutions and training needed to maximize network security. To learn more, reach out to us at (704) 895-0010.

 [  ](https://trustapex.directivesites.com/javascript:void(0);) [  ](https://trustapex.directivesites.com/javascript:void(0);) [  ](https://trustapex.directivesites.com/javascript:void(0);)

Tags:

  [Security](https://trustapex.directivesites.com/blog/tags/security)   [Software](https://trustapex.directivesites.com/blog/tags/software)   [Hackers](https://trustapex.directivesites.com/blog/tags/hackers)

 [  MosaicLoader Malware Uses Cracked Software to Stea... ](https://trustapex.directivesites.com/blog/mosaicloader-malware-uses-cracked-software-to-steal-your-credentials)

 [  New Update Brings Windows 11 to Chrome ](https://trustapex.directivesites.com/blog/new-update-brings-windows-11-to-chrome)

 About the author

 [ ![Tim Campbell](https://trustapex.directivesites.com/images/easyblog_avatar/805_805_author_blog.png) ](https://trustapex.directivesites.com/blog/blogger/tim-campbell)

 [Tim Campbell](https://trustapex.directivesites.com/blog/blogger/tim-campbell)

  [  ](https://trustapex.directivesites.com/blog/blogger/tim-campbell)

Tim Campbell is the President of Apex Technology which he founded in 1998. In 2009, Apex launched its Managed IT Services division. Since its inception, Apex has become the premier Managed IT Services Companies in the Charlotte metro area specializing in Managed IT, Security, Data Backup &amp; Cloud Computing Solutions.

Author's recent posts

  [More posts from author](https://trustapex.directivesites.com/blog/blogger/tim-campbell)

 [ Wednesday, 05 August 2026  5 Essential Steps to a More Secure Wireless Network ](https://trustapex.directivesites.com/blog/5-essential-steps-to-a-more-secure-wireless-network)

 [ Monday, 03 August 2026  Building a Business Workspace That Fits In Your Backpack ](https://trustapex.directivesites.com/blog/building-a-business-workspace-that-fits-in-your-backpack)

 [ Friday, 31 July 2026  The Power of Modern VoIP ](https://trustapex.directivesites.com/blog/the-power-of-modern-voip)

 <a class="eb-anchor-link" data-allow-comment="1" id="comments" name="comments"> </a> Comments

  No comments made yet. Be the first to submit a comment

   **![Guest](https://trustapex.directivesites.com/media/com_easyblog/images/avatars/author.png)**   Already Registered? [Login Here](https://trustapex.directivesites.com/component/users/login?return=aHR0cHM6Ly90cnVzdGFwZXguZGlyZWN0aXZlc2l0ZXMuY29tL2Jsb2cvd2luZG93cy1zdWZmZXJpbmctZnJvbS1tc2h0bWwtZXhwbG9pdA==&Itemid=101)

 Thursday, 06 August 2026

  Subscribe to the blog (Please fill in your email address to subscribe to updates from this post.)

 **Captcha Image**
