Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • VPS Plans
  • VPS Locations
  • Affiliates
  • Blog
  • Contact Us
  • Login
  • Register
No Result
View All Result
OneVPS Blog
  • Home
  • VPS Plans
  • VPS Locations
  • Affiliates
  • Blog
  • Contact Us
No Result
View All Result
OneVPS Blog
No Result
View All Result
Home Article

MICROSOFT REMOTE DESKTOP SERVICES REMOTE CODE EXECUTION VULNERABILITY – CVE-2019-0708

1 min read
MICROSOFT REMOTE DESKTOP SERVICES REMOTE CODE EXECUTION VULNERABILITY – CVE-2019-0708
Share on FacebookShare on Twitter

Microsoft has announced a critical Remote Desktop Protocol (RDP) security vulnerability. RDP on Microsoft Server 2008/2008 R2 and Windows 7 are affected. Microsoft has also issued patches for End-of-Life operating systems Windows Server 2003 and Windows XP.

An unauthenticated attacker can exploit this vulnerability by connecting to the target system using the Remote Desktop Protocol (RDP) and sending specially crafted requests. This vulnerability is pre-authentication and requires no user interaction.

The RDP NLA (network level authentication) security setting mitigates this vulnerability from unauthenticated external attackers and it is the default for our Windows VPS. However, some clients may have disabled NLA.

The RDP NLA security setting can be found by going to the following location in Windows.

Control Panel > System > Remote settings > allow remote connections to this computer > [check] allow connections only from computers running Remote Desktop with Network Level Authentication (recommended)

All Windows VPS clients are recommended to update their VPS as soon as possible as well as double check to ensure the RDP NLA higher security setting is enabled.

Windows VPS can be updated by going to “Control Panel > Windows Update”.

References

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708
https://blogs.technet.microsoft.com/msrc/2019/05/14/prevent-a-worm-by-updating-remote-desktop-services-cve-2019-0708/

Related Posts

ONEVPS 30% OFF
Article

OneVPS 30%OFF

February 24, 2024
ONEVPS 30% OFF
Article

ONEVPS 30% OFF

February 24, 2024
Article

How to change a Cloud VPS’ password.

September 15, 2021
Next Post
Microsoft Remote Desktop Services Remote Code Execution Vulnerability – CVE-2019-1181, CVE-2019-1182, CVE-2019-1222, and CVE-2019-1226

Microsoft Remote Desktop Services Remote Code Execution Vulnerability – CVE-2019-1181, CVE-2019-1182, CVE-2019-1222, and CVE-2019-1226

Recommended.

How to manage iptables firewall in Linux

How to manage iptables firewall in Linux

May 27, 2020
MICROSOFT REMOTE DESKTOP SERVICES REMOTE CODE EXECUTION VULNERABILITY – CVE-2019-0708

MICROSOFT REMOTE DESKTOP SERVICES REMOTE CODE EXECUTION VULNERABILITY – CVE-2019-0708

May 5, 2020

Trending.

How to Hack a VPS

How to Hack a VPS

February 15, 2019
How to connect to Linux from Windows using PuTTY

How to connect to Linux from Windows using PuTTY

September 15, 2021

Connecting with OpenVPN through your VPS – Windows

October 26, 2021
OneVPS Blog

OneVPS.Com - The Only VPS You'll Ever Need.

© 2012-2020 Think Huge Ltd. Trademarks And Brands Are The Property Of Their Respective Owners.

Address: Level 26, Beautiful Group Tower, 77 Connaught Road, Central, Hong Kong

Quick Links

  • Home
  • VPS Plans
  • VPS Locations
  • Affiliates
  • Blog
  • Contact Us

Other links

  • VPS Knowledgebase
  • About OneVPS
  • Privacy
  • Terms
  • Contact Us
  • About
  • Affiliates
  • FAQ

© 2012 - 2020 Think Huge Ltd Trademarks And Brands Are The Property Of Their Respective Owners.

No Result
View All Result
  • Home
  • VPS Plans
  • VPS Locations
  • Affiliates
  • Blog
  • Contact Us

© 2012 - 2020 Think Huge Ltd Trademarks And Brands Are The Property Of Their Respective Owners.