Lucene search

K
msrcMicrosoft Security Response CenterMSRC:CC5707634DE28783ABF066B3B22F9E19
HistoryAug 13, 2019 - 7:00 a.m.

Patch new wormable vulnerabilities in Remote Desktop Services (CVE-2019-1181/1182)

2019-08-1307:00:00
Microsoft Security Response Center
link
16

0.975 High

EPSS

Percentile

100.0%

Today Microsoft released a set of fixes for Remote Desktop Services that include two critical Remote Code Execution (RCE) vulnerabilities, CVE-2019-1181 and CVE-2019-1182. Like the previously-fixed ‘BlueKeep’ vulnerability (CVE-2019-0708), these two vulnerabilities are also ‘wormable’, meaning that any future malware that exploits these could propagate from vulnerable computer to vulnerable computer without user interaction.