Remote desktop protocol remote code execution vulnerability
A remote code execution vulnerability exists in Remote Desktop Protocol (RDP) if the RDP server has Smart Card authentication enabled. An attacker who successfully exploited this vulnerability could execute code on the target system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit this vulnerability, an attacker would need to run a specially crafted application against an RDP server which has Smart Card authentication enabled. Smart Card authentication is a non-default configuration; systems without it enabled are not vulnerable.
The security update addresses the vulnerability by correcting how Remote Desktop Protocol handles requests. The following table contains links to the standard entry for each vulnerability in the Common Vulnerabilities and Exposures list:
Vulnerability title |
CVE number |
Publicly disclosed |
Exploited |
Remote Desktop Protocol Remote Code Execution Vulnerability |
Yes |
Yes |
Mitigating Factors
Microsoft has not identified any mitigating factors for this vulnerability.