Release notes for build 4421 (Oct 8, 2021)
Security issue fix:
- Authentication bypass leading to arbitrary file-upload remote code execution vulnerability (CVE-2021-42099), reported by moon.
Release notes for build 4420 (Sep 29, 2021)
Enhancements:
- Leverage the Mailbox Folder Permission Changes management task to grant permissions to a mailbox's root folder.
- The performance of Azure Active Directory User and Group reports has been improved.
- Japanese and Chinese language support has been enhanced.
Issue fixes:
- An issue of delayed archiving while running audits or generating reports has been fixed.
- An issue in generating data for the Mailbox Sizes report has been fixed.
- An issue in generating data for Synced Users and Cloud Users reports has been fixed.
- An issue with Product Schedulers unavailability to a default admin with Log360 license has been fixed.
- An issue in modifying litigation hold for soft deleted mailboxes has been fixed.
- An issue in generating data for audit reports when the Callers or Targets filter in an audit profile is applied has been fixed.
- An issue in exporting the Inactive Mobile Devices report when the inactive days filter in the report scheduler is applied has been fixed.
Release notes for build 4419 (Sep 22, 2021)
Issue fix:
- A post authentication command injection vulnerability affecting a REST API URL has been fixed. The vulnerability was reported by Sahil Dhar through our bug bounty program.
Release notes for build 4418 (Sep 20, 2021)
Issue fix:
- Issue faced while generating License Details report due to a change in Microsoft API has been fixed.
Release notes for build 4417 (Sep 8, 2021)
Issue fix:
- An authentication bypass vulnerability affecting some of the REST API URLs has been fixed.
Release notes for build 4416 (Sep 6, 2021)
Issue fixes:
The following issues have been fixed,
- Remote code execution via BCP file overwrite .
- Deleted contacts shown in All Mail Contacts report.
- Error in retrieving data based on space separated values provided for Like constant in some audit and general reports.
- Inability to add technicians in delegation module without MSOnline module.
- Days To Expire filter not applied in Soon To Expire Licenses by User report.
- Issue faced while using templates to create users along with MFA configuration.
- Incorrect data shown when Recipient Type filter is applied in Manage License module.
- Missing data in All Users report for MSSQL users.
Release notes for build 4415 (Aug 5, 2021)
Enhancements:
- Service pack files are now secured with digital signature to prevent unauthorized modifications while updating the product.
Issue fixes:
- Incorrect data issue in MFA Enabled and MFA Disabled Users report.
- Issue in creating Microsoft 365 groups with multiple owners.
- Issue in exporting and scheduling reports when the data contains DST (Daylight Savings Time) transition date.
- Error in showing Arabic characters in the Mail Subject column of Mail Trace reports.
- Difficulty in loading details about draft messages with empty Sent Date Time field in Content Search module.
- Missing to show the available data in the monitoring module, due to change in service name.
- Issue in managing users based on group membership in License Management scheduler.
- Details of external mails not being included in Mail Trace reports, when the count of unmanaged uses is greater than managed users.
- Inability to create custom views of audit reports with multiple filter settings.
Other:
- M365 Manager Plus will now use only service account for performing Microsoft 365 activities. Support for using technician credentials has been deprecated.
Release notes for build 4414 (May 12, 2021)
Enhancement:
- In the light of Skype for Business deprecation, M365 Manager Plus now uses MicrosoftTeams PowerShell module instead of SkypeOnlineConnector module for gathering data for all Skype General reports. Please note that to install MicrosoftTeams module, PowerShell version 5.1 or higher is required.