CVE-2019-0708

CRITICALCVSS 9.8/10Actively ExploitedEPSS 100.00%

Last modified

CVE-2019-0708 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.. CISA has confirmed active exploitation in the wild. EPSS estimates a 100.00% chance of exploitation in the next 30 days.

Description

A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.

Metrics

CVSS 3.1
9.8/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
100.00%

100.0th percentile

Probability of exploitation in the next 30 days. Learn more

Exploitation Status

This vulnerability is listed in CISA’s Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. Federal agencies must remediate by .

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
MicrosoftWindows 7All versionsSp1
MicrosoftWindows Server 2008All versionsSp2
MicrosoftWindows Server 2008r2Sp1
SiemensAxiom Multix M FirmwareAll versions
SiemensAxiom Vertix Md Trauma FirmwareAll versions
SiemensAxiom Vertix Solitaire M FirmwareAll versions
SiemensMobilett Xp Digital FirmwareAll versions
SiemensMultix Pro Acss P FirmwareAll versions
SiemensMultix Pro P FirmwareAll versions
SiemensMultix Pro FirmwareAll versions
SiemensMultix Pro Acss FirmwareAll versions
SiemensMultix Pro Navy FirmwareAll versions
SiemensMultix Swing FirmwareAll versions
SiemensMultix Top FirmwareAll versions
SiemensMultix Top Acss FirmwareAll versions
SiemensMultix Top P FirmwareAll versions
SiemensMultix Top Acss P FirmwareAll versions
SiemensVertix Solitaire FirmwareAll versions
SiemensAtellica Solution FirmwareAll versions
SiemensAptio FirmwareAll versions
SiemensStreamlab FirmwareAll versions
SiemensCentralink FirmwareAll versions
SiemensViva E FirmwareAll versions
SiemensViva Twin FirmwareAll versions
SiemensSyngo Lab Process ManagerAll versions
SiemensRapidpoint 500 Firmware<= 2.3.2
SiemensLantis FirmwareAll versions
HuaweiAgile Controller-Campus Firmwarev100r002c00
HuaweiAgile Controller-Campus Firmwarev100r002c10
HuaweiBh620 V2 Firmwarev100r002c00
HuaweiBh621 V2 Firmwarev100r002c00
HuaweiBh622 V2 Firmwarev100r001c00
HuaweiBh640 V2 Firmwarev100r002c00
HuaweiCh121 Firmwarev100r001c00
HuaweiCh140 Firmwarev100r001c00
HuaweiCh220 Firmwarev100r001c00
HuaweiCh221 Firmwarev100r001c00
HuaweiCh222 Firmwarev100r002c00
HuaweiCh240 Firmwarev100r001c00
HuaweiCh242 Firmwarev100r001c00
HuaweiCh242 V3 Firmwarev100r001c00
HuaweiE6000 Firmwarev100r002c00
HuaweiE6000 Chassis Firmwarev100r001c00
HuaweiGtsoftx3000 Firmwarev200r001c01spc100
HuaweiGtsoftx3000 Firmwarev200r002c00spc300
HuaweiGtsoftx3000 Firmwarev200r002c10spc100
HuaweiOceanstor 18500 Firmwarev100r001c30spc300
HuaweiOceanstor 18800 Firmwarev100r001c30spc300
HuaweiOceanstor 18800f Firmwarev100r001c30spc300
HuaweiOceanstor Hvs85t Firmwarev100r001c00

Showing 50 of 75 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2019-0708?
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.
How severe is CVE-2019-0708?
CVE-2019-0708 has a CVSS score of 9.8/10 (CRITICAL severity). The EPSS model estimates a 100.00% probability of exploitation in the next 30 days. This vulnerability is listed in CISA's Known Exploited Vulnerabilities catalog.
How do I fix CVE-2019-0708?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-0708?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST