Source |
The Hacker News |
Identifiant |
1709110 |
Date de publication |
2020-05-14 03:24:50 (vue: 2020-05-14 11:08:54) |
Titre |
Improper Microsoft Patch for Reverse RDP Attacks Leaves 3rd-Party RDP Clients Vulnerable |
Texte |
Remember the Reverse RDP Attack-wherein a client system vulnerable to a path traversal vulnerability could get compromised when remotely accessing a server over Microsoft's Remote Desktop Protocol?
Though Microsoft had patched the vulnerability (CVE-2019-0887) as part of its July 2019 Patch Tuesday update, it turns out researchers were able to bypass the patch just by replacing the backward |
Notes |
|
Envoyé |
Oui |
Condensat |
0887 2019 3rd able accessing attack attacks backward bypass client clients compromised could cve desktop get had improper its july just leaves microsoft out over part party patch patched path protocol rdp remember remote remotely replacing researchers reverse server system though traversal tuesday turns update vulnerability vulnerable when wherein |
Tags |
Vulnerability
|
Stories |
|
Move |
|