Remediate vulnerabilities

You can remediate vulnerabilities with available fixes from the All detections tab in Vulnerability Management or from the Affected devices tab of a specific vulnerability.

Remediate from the All detections tab

  1. Go to Endpoint Remediation > Vulnerabilities, then select All detections.
  2. (Optional) Apply a custom filter.
  3. Select the devices to remediate., and then choose Remediate (x).
  4. In the wizard, select the devices to be remediate.
  5. (Optional) Exclude devices by selecting Actions > Exclude in the device row.
  6. Select Next.
  7. Choose an Install type:
    • Install now
    • Set a schedule and specify a Start date and time.
  8. Configure the following options as needed:
    • Enable retry: To allow install reattempts in the event of failure.
    • Offline assets: To remediate offline devices when they come back online.
    • Reboot to complete patch installs: To permit devices to reboot as needed during or after patch installations.
    • Force Close Application(s) Before Install to close applications when needed as part of patch installations.
  9. Select Next.
  10. Review the summary and select Confirm.

Remediate a specific vulnerability's Affected devices

  1. Go to Endpoint Remediation > Vulnerabilities, and then select By vulnerability.
  2. (Optional) Apply a custom filter.
  3. Select the target vulnerability.
  4. On the Affected assets tab, apply a custom filter (optional), and select the device to remediate.
  5. Select Actions > Remediate.
  6. In the wizard, select the devices to be remediate.
  7. Select Next to continue.
  8. Choose an Install type:
    • Install now
    • Set a schedule and specify a Start date and time.
  9. Configure the following options as needed:
    • Enable retry: To allow install reattempts in the event of failure.
    • Offline assets: To remediate offline devices when they come back online.
    • Reboot to complete patch installs: To permit devices to reboot as needed during or after patch installations.
    • Force Close Application(s) Before Install to close applications when needed as part of patch installations.
  10. Select Next.
  11. Review the summary and select Confirm.

Remediate a single device

You can perform remediation for a single device from either the All detections or a vulnerability's Affected devices tab.

  1. Go to either the All detections or a specific vulnerability's Affected devices tab.
  2. In the device row, select the Actions > Remediate.
  3. In the wizard, select the device to remediate, and then select Next.
  4. Choose an Install type: to or Set a schedule.
    • Install now
    • Set a schedule and specify a Start date and time.
  5. Configure the following options as needed:
    • Enable retry: To allow install reattempts in the event of failure.
    • Offline assets: To remediate offline devices when they come back online.
    • Reboot to complete patch installs: To permit devices to reboot as needed during or after patch installations.
    • Force Close Application(s) Before Install to close applications when needed as part of patch installations.
  6. Select Next.
  7. Review the summary and select Confirm.

Related articles