Microsoft RDP RCE (CVE-2019-0708) (BlueKeep) (uncredentialed check)

Critical Nessus Plugin ID 125313

New! Vulnerability Priority Rating (VPR)

Tenable calculates a dynamic VPR for every vulnerability. VPR combines vulnerability information with threat intelligence and machine learning algorithms to predict which vulnerabilities are most likely to be exploited in attacks. Read more about what VPR is and how it's different from CVSS.

VPR Score: 9.8

Synopsis

The remote host is affected by a remote code execution vulnerability.

Description

The remote host is affected by a remote code execution vulnerability in Remote Desktop Protocol (RDP). An unauthenticated, remote attacker can exploit this, via a series of specially crafted requests, to execute arbitrary code.

Solution

Microsoft has released a set of patches for Windows XP, 2003, 2008, 7, and 2008 R2.

See Also

http://www.nessus.org/u?577af692

http://www.nessus.org/u?8e4e0b74

Plugin Details

Severity: Critical

ID: 125313

File Name: msrdp_cve-2019-0708.nbin

Version: 1.16

Type: remote

Agent: windows

Family: Windows

Published: 2019/05/22

Updated: 2021/01/15

Dependencies: 66173

Risk Information

Risk Factor: Critical

VPR Score: 9.8

CVSS Score Source: CVE-2019-0708

CVSS v2.0

Base Score: 10

Temporal Score: 8.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:H/RL:OF/RC:C

CVSS v3.0

Base Score: 9.8

Temporal Score: 9.4

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:microsoft:windows, cpe:/a:microsoft:remote_desktop_protocol

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2019/05/14

Vulnerability Publication Date: 2019/05/14

Exploitable With

Core Impact

Metasploit (CVE-2019-0708 BlueKeep RDP Remote Windows Kernel Use After Free)

Reference Information

CVE: CVE-2019-0708

BID: 108273