Wasn't this vulnerability in Webready document the same as Microsoft Security Advisory 2737111 ?
Back then, the "fix" was to disabled the webreadyvieweing, works fine for my an my 4000 mailboxes. Gladly running Exchange 2010 SP1 UR6, and i have no intentions to put my exchange user base, to the mercy of bad quality and testing from Microsoft again, I was going to go to SP2 finally, until i saw we're back to issues instead of fixes..
Come on Microsoft, i still have faith, but geez, it doesn't seem the high level managers are reading this blog, how can they let the coders release a patch that is supposed to improve the exchange environment, introducing issues different than the ones the patch is supposed to fix, and not once, which would be ok, not twice, (which should raise flags with Q&A managers, but as many times you guys have released an RU. Are the high level managers this blind at Redmon ? is anybody at redmon reading this blog, listening to us, and doing something to prevent this "little mistakes" ? Dear Microsoft, we're beeing forced to install an Exchange RU and a security update in the same package, you bet is going to break stuff up. , this is unacceptable for us , should be unacceptable for Q&A at Microsoft, Please, Please fix this RU's once a for all, don't release another one until you guys get the next one straight.
In the meantime, can we get away with the webreadydocument disabled ? my users don't mind this feature at all. And my environemnt would be happy i'm not installing another nightware Exchange RU
This is the simple PS command i ran months ago, and it seems it would stay this way until who knows when.
Get-OwaVirtualDirectory | where {$_.OwaVersion -eq 'Exchange2007' -or $_.OwaVersion -eq 'Exchange2010'} | Set-OwaVirtualDirectory -WebReadyDocumentViewingOnPublicComputersEnabled:$false -WebReadyDocumentViewingOnPrivateComputersEnabled:$false