via The Hacker News
Sunday, May 17, 2020
Improper Microsoft Patch For Reverse RDP Attacks Leaves 3rd-Party RDP Clients Vulnerable
Remember the Reverse RDP Attack—wherein a client system vulnerable to a path traversal vulnerability could get compromised when remotely accessing a server over Microsoft's Remote Desktop Protocol? Though Microsoft had patched the vulnerability (CVE-2019-0887) as part of its July 2019 Patch Tuesday update, it turns out researchers were able to bypass the patch just by replacing the backward![](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_u6tiwrksL8r5ocAEmjImOadAVN9mF4Vp4zkPy0nB-KJ_ST4BrHiRm59wzMc53vuD5lEW9S-mAFY8O3PLku9ZTxKTtDj1GRhQgdtqVIjd5tBIFV0wMYY6sb4-omBHNYbA=s0-d)
via The Hacker News
via The Hacker News
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment