Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 2 min 103 bronnen 1 kritiek 44 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2019-0708

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-416

Beschrijving NL

Microsoft Remote Desktop Services, voorheen bekend als Terminal Service, bevat een niet-gespecificeerd beveiligingslek waarmee een niet-geverifieerde aanvaller via RDP verbinding kan maken met het doelsysteem en speciaal vervaardigde verzoeken kan verzenden. Succesvolle exploitatie maakt het mogelijk om code op afstand uit te voeren. De kwetsbaarheid is ook bekend onder de naam BlueKeep.

Vereiste actie: voer updates uit volgens de instructies van de leverancier.

Origineel (Engels) tonen

Microsoft Remote Desktop Services, formerly known as Terminal Service, contains an unspecified vulnerability that allows an unauthenticated attacker to connect to the target system using RDP and send specially crafted requests. Successful exploitation allows for remote code execution. The vulnerability is also known under the moniker of BlueKeep.

Required action: Apply updates per vendor instructions.

Vendors

Microsoft

Affected products

Remote Desktop Services

References