viralamo

Menu
  • Technology
  • Science
  • Money
  • Culturs
  • Trending
  • Video

Subscribe To Our Website To Receive The Last Stories

Join Us Now For Free
Home
Technology
Another reason to hurry with Windows server patches: A new RDP vulnerability
Technology

Another reason to hurry with Windows server patches: A new RDP vulnerability

16/01/2020

A crafted request is like a skeleton key for gaining access to unpatched Windows Remote Desktop servers.
Enlarge / A crafted request is like a skeleton key for gaining access to unpatched Windows Remote Desktop servers.

Anadolu Agency / Getty Images

While much of the attention around Microsoft’s latest Windows security patch has been focused on a flaw in Windows 10 and Windows Server that could be used to spoof a certificate for secure Web sessions or signing code, there were 48 other vulnerabilities that were fixed in the latest update package. Five were related to Microsoft’s Remote Desktop Protocol (RDP)-based service, which is used by thousands of organizations for remote access to computers within their networks. And two of them are flaws in the Windows Remote Desktop Gateway that could allow attackers to gain access to networks without having to provide a login.

These two separate bugs, identified as CVE-2020-0609 and CVE-2020-0610, are rated as more dangerous than the crypto bug by Microsoft because, while they’re not yet exploited, they could be used to remotely execute code on targeted RDP servers before the gateway even attempts to authenticate them.

“An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights,” the Microsoft Security Response Center summary of both vulnerabilities warned. And there is no way to work around the vulnerability without applying a software update. Both attacks rely on specially crafted requests to the Remote Desktop Gateway using the RDP protocol.

Remotely Desktop Pwnable

These new vulnerabilities are unique from—but similar in impact to—the Remote Desktop Service vulnerability revealed last May, also labeled as critical by Microsoft. Multiple proof-of-concept exploits of the bug, dubbed “Bluekeep,” quickly emerged, and the exploit was potentially “wormable”—meaning that it could be used to infect systems that could then in turn scan for other vulnerable systems to attack. According to some researchers, an exploit for the vulnerability had been on sale on Web criminal marketplaces since September of 2018. A cursory search on the security search engine Shodan showed hundreds of systems that are still potentially exposed by that vulnerability.

The other vulnerabilities patched in the latest release from Microsoft related to RDP include a flaw in Remote Desktop Web Access that could allow an attacker using Web requests to obtain legitimate users’ login credentials, a denial of service vulnerability in RDP Gateway, and a flaw in the Windows Remote Desktop Client across all supported versions of Windows (including Windows 7) that could allow a malicious remote RDP server to execute code remotely on the client machine.

Given the slower rate of patching that usually occurs with servers—particularly older servers—these new vulnerabilities may have a long life as well. And depending on how deep their roots are, Microsoft may be forced to extend the patches to older operating systems as well. The May 2019 bug’s impact was judged to be so severe that it led Microsoft to issue updates even for Windows XP, Vista, and Server 2003.

 

Source link

Share
Tweet
Pinterest
Linkedin
Stumble
Google+
Email
Prev Article
Next Article

Related Articles

Valve president Gabe Newell: ‘We’re way closer to The Matrix than people realize’
Think we’re far off from The Matrix? Gabe Newell says …

Valve president Gabe Newell: ‘We’re way closer to The Matrix than people realize’

Xwing unveils autonomous flight system for regional planes
Automated flight startup Xwing today introduced a system for fully …

Xwing unveils autonomous flight system for regional planes

Leave a Reply Cancel reply

Find us on Facebook

Related Posts

  • Spike Trap: Animal Crossing and Warzone surged on social in different ways
    Spike Trap: Animal Crossing and Warzone surged …
    28/05/2020
  • You can get 11 top-tier Mac apps for under $60 right now
    You can get 11 top-tier Mac apps …
    18/06/2020
  • Actionable big data: How to bridge the gap between data scientists and engineers
    Actionable big data: How to bridge the …
    29/02/2020
  • Google Meet gets Gmail integration, will soon display up to 16 video call participants
    Google Meet gets Gmail integration, will soon …
    17/04/2020
  • Nvidia’s RTX 3080 is more exciting than PlayStation 5 or Xbox Series X
    Nvidia’s RTX 3080 is more exciting than …
    02/09/2020

Popular Posts

  • Omnipotent BMCs from QCT remain vulnerable to critical Pantsdown threat
    Omnipotent BMCs from QCT remain vulnerable to …
    26/05/2022 0
  • 10 Times Going to the Toilet Went …
    27/04/2022 0
  • Microsoft accounts can go passwordless, making “password123” a thing of the past
    Businesses are adopting Windows 11 more quickly …
    27/04/2022 0
  • Russia wages “relentless and destructive” cyberattacks to bolster Ukraine invasion
    Russia wages “relentless and destructive” cyberattacks to …
    27/04/2022 0
  • 10 of the Most Random Reality Shows …
    28/04/2022 0

viralamo

Pages

  • Contact Us
  • Privacy Policy
Copyright © 2022 viralamo
Theme by MyThemeShop.com

Ad Blocker Detected

Our website is made possible by displaying online advertisements to our visitors. Please consider supporting us by disabling your ad blocker.

Refresh