CVE ID
CVE-2019-0708
Vulnerability Name
Microsoft Remote Desktop Services Remote Code Execution Vulnerability
- Project: Microsoft
- Product: Remote Desktop Services
Date
- Date Added: 2021-11-03
- Due Date: 2022-05-03
Description
Microsoft Remote Desktop Services, formerly known as Terminal Service, contains an unspecified vulnerability that allows an unauthenticated attacker to connect to the target system using RDP and send specially crafted requests. Successful exploitation allows for remote code execution. The vulnerability is also known under the moniker of BlueKeep.
Known To Be Used in Ransomware Campaigns?
Known
Action
Apply updates per vendor instructions.
Additional Notes
https://nvd.nist.gov/vuln/detail/CVE-2019-0708
Related Security News
- Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers
- Kimsuky Exploits BlueKeep RDP Vulnerability to Breach Systems in South Korea and Japan
- 10 Critical Network Pentest Findings IT Teams Overlook
Top comments (0)