← Back to CVE List
CVE-2019-0708NVD
Vulnerability Summary
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.
Affected & Patched Versions
- Microsoft Windows >= 7 for 32-bit Systems Service Pack 1
- Microsoft Windows >= 7 for x64-based Systems Service Pack 1
- Microsoft Windows Server >= 2008 R2 for x64-based Systems Service Pack 1 (Core installation)
- Microsoft Windows Server >= 2008 R2 for Itanium-Based Systems Service Pack 1
- Microsoft Windows Server >= 2008 R2 for x64-based Systems Service Pack 1
- Microsoft Windows Server >= 2008 for 32-bit Systems Service Pack 2 (Core installation)
- Microsoft Windows Server >= 2008 for Itanium-Based Systems Service Pack 2
- Microsoft Windows Server >= 2008 for 32-bit Systems Service Pack 2
- Microsoft Windows Server >= 2008 for x64-based Systems Service Pack 2
- Microsoft Windows Server >= 2008 for x64-based Systems Service Pack 2 (Core installation)
Not provided by cveorg for this CVE.
External References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708
- https://cert-portal.siemens.com/productcert/pdf/ssa-932041.pdf
- https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf
- https://cert-portal.siemens.com/productcert/pdf/ssa-433987.pdf
- https://cert-portal.siemens.com/productcert/pdf/ssa-832947.pdf
- https://cert-portal.siemens.com/productcert/pdf/ssa-166360.pdf
- https://cert-portal.siemens.com/productcert/pdf/ssa-406175.pdf
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190529-01-windows-en
- http://www.huawei.com/en/psirt/security-notices/huawei-sn-20190515-01-windows-en
- http://packetstormsecurity.com/files/153133/Microsoft-Windows-Remote-Desktop-BlueKeep-Denial-Of-Service.html
- http://packetstormsecurity.com/files/153627/Microsoft-Windows-RDP-BlueKeep-Denial-Of-Service.html
- http://packetstormsecurity.com/files/154579/BlueKeep-RDP-Remote-Windows-Kernel-Use-After-Free.html
- http://packetstormsecurity.com/files/155389/Microsoft-Windows-7-x86-BlueKeep-RDP-Use-After-Free.html
- http://packetstormsecurity.com/files/162960/Microsoft-RDP-Remote-Code-Execution.html