The vulnerability (CVE-2019-0708) resides in the “remote desktop services” component, including Windows 7, Windows Server 2008 R2, and Windows Server 2008. Windows 2003 operating systems for Microsoft.
SELLER, [09/30/18 12:54]Exploiting this vulnerability allows you to write malware similar to WannaCry, discovered exactly 2 years ago .
RDP RCE Exploit
description:
This is a bug in RDP protocol.
Windows remotely who enables RDP.
vulnerability type:
Heap overflow
affected versions:
Windows 2000 / XP / 2003 / Vista / 7/2008 (R2)
privilege level obtained:
SYSTEM privilege
reliability:
90% for one core / 30% for multiple core
exploitation length:
around 10 seconds
Possible buyer, [09/30/18 12:58]
affected versions:
Windows 2000 / XP / 2003 / Vista / 7/2008 (R2)
Lol
Possible buyer, [09/30/18 12:58]
is it pre-auth or post-auth vuln?
SELLER, [09/30/18 12:59]
Pre
Possible buyer, [09/30/18 12:59]
for how much they / he / she sells it?
SELLER, [09/30/18 12:59]
500
SELLER, [09/30/18 12:59]
Shared
Possible buyer, [09/30/18 12:59]
500k USD?
SELLER, [09/30/18 13:00]
So u can guess it was sold few times
SELLER, [09/30/18 13:00]
Yes
This vulnerability is pre-authentication and requires no user interaction. In the case of the crime virus, it is wormable.The vulnerability is so serious that Microsoft released patches even for unsupported OS versions - Windows XP and Windows 2003.
Source: https://habr.com/ru/post/451852/
All Articles