CVE-2019-0708
unknown
KEV
CVSS v3
—
CVSS v2
—
VIR risk
1.5
Description
Microsoft Remote Desktop Services, formerly known as Terminal Service, contains an unspecified vulnerability that allows an unauthenticated attacker to connect to the target system using RDP and send specially crafted requests. Successful exploitation allows for remote code execution. The vulnerability is also known under the moniker of BlueKeep.
CISA KEV
- Vendor
- Microsoft
- Product
- Remote Desktop Services
- Due date
- 2022-05-03
Predictions
Exploit likelihood
99%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cisa-kev — https://nvd.nist.gov/vuln/detail/CVE-2019-0708
Exploits
References
Verify integrity in audit chain (admin only). AS-IS.