Rewterz

Rewterz Threat Advisory – ZombieLoad Chip Flaws in Apple, Amazon, Google, Microsoft and Mozilla Products That Use Intel CPUs

May 15, 2019
Rewterz

Rewterz Threat Advisory – Siemens SCALANCE W1750D Multiple Command Injection and Cross-Site Scripting Vulnerabilities

May 16, 2019

Rewterz Threat Advisory – CVE-2019-0708 Microsoft Remote Desktop Services Vulnerability

Severity

High

Analysis Summary

Exploiting this vulnerability involves sending a specifically crafted request to a system utilizing RDP (Remote Desktop Protocol). An attacker who successfully exploited this vulnerability could execute arbitrary code on the target system. This can include installing programs; view, change, or delete data; or create new accounts with full user rights. This vulnerability exists prior to any credential passing, potentially allowing this threat to spread in a worm-like fashion.


Impact

  • System/ Privileged access
  • Execution of arbitrary code

Affected Vendors

Microsoft

Affected Products

  • Windows 7
  • Windows Server 2008 R2
  • Microsoft Windows Server 2008
  • Windows XP (Out of support)
  • Windows 2003 (Out of support)

Remediation

Vendor has released updates/ patches for the following products.

Windows XP SP3 x86, Windows XP Professional x64 Edition SP2, Windows XP Embedded SP3 x86, Windows Server 2003 SP2 x86, Windows Server 2003 x64 Edition SP2

https://www.catalog.update.microsoft.com/Search.aspx?q=KB4500331

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.