imPC@ndo IT

Tracker / CVE-2019-0708

CVE-2019-0708

Ransomware Critical 9.8

A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.

Affected products and versions

huawei agile_controller-campus_firmware
huawei bh620_v2_firmware
huawei bh621_v2_firmware
huawei bh622_v2_firmware
huawei bh640_v2_firmware
huawei ch121_firmware
huawei ch140_firmware
huawei ch220_firmware
huawei ch221_firmware
huawei ch222_firmware
huawei ch240_firmware
huawei ch242_firmware
huawei ch242_v3_firmware
huawei e6000_chassis_firmware
huawei e6000_firmware
huawei elog_firmware
huawei espace_ecs_firmware
huawei gtsoftx3000_firmware
huawei oceanstor_18500_firmware
huawei oceanstor_18800_firmware
huawei oceanstor_18800f_firmware
huawei oceanstor_hvs85t_firmware
huawei oceanstor_hvs88t_firmware
huawei rh1288_v2_firmware
huawei rh1288a_v2_firmware
huawei rh2265_v2_firmware
huawei rh2268_v2_firmware
huawei rh2285_v2_firmware
huawei rh2285h_v2_firmware
huawei rh2288_v2_firmware
huawei rh2288a_v2_firmware
huawei rh2288e_v2_firmware
huawei rh2288h_v2_firmware
huawei rh2485_v2_firmware
huawei rh5885_v2_firmware
huawei rh5885_v3_firmware
huawei seco_vsm_firmware
huawei smc2.0_firmware
huawei uma_firmware
huawei x6000_firmware
huawei x8000_firmware
microsoft windows_7
microsoft windows_server_2008
siemens aptio_firmware
siemens atellica_solution_firmware
siemens axiom_multix_m_firmware
siemens axiom_vertix_md_trauma_firmware
siemens axiom_vertix_solitaire_m_firmware
siemens centralink_firmware
siemens lantis_firmware
siemens mobilett_xp_digital_firmware
siemens multix_pro_acss_firmware
siemens multix_pro_acss_p_firmware
siemens multix_pro_firmware
siemens multix_pro_navy_firmware
siemens multix_pro_p_firmware
siemens multix_swing_firmware
siemens multix_top_acss_firmware
siemens multix_top_acss_p_firmware
siemens multix_top_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References