Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
BID:54935
Info
Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
| Bugtraq ID: | 54935 |
| Class: | Design Error |
| CVE: |
CVE-2012-2526 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 14 2012 12:00AM |
| Updated: | Aug 14 2012 12:00AM |
| Credit: | Edward Torkington of NCC Group |
| Vulnerable: |
Microsoft Windows XP Service Pack 3 0 Microsoft Windows XP Professional SP3 Microsoft Windows XP Professional SP2 Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Media Center Edition SP3 Microsoft Windows XP Media Center Edition SP2 Microsoft Windows XP Media Center Edition SP1 Microsoft Windows XP Home SP3 Microsoft Windows XP Home SP2 Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows XP Embedded SP3 Microsoft Windows XP Embedded SP2 Microsoft Windows XP Embedded SP1 Microsoft Windows XP Embedded |
| Not Vulnerable: | |
Discussion
Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
Microsoft Remote Desktop Protocol is prone to a remote code-execution vulnerability.
Successful exploits will allow the attacker to execute arbitrary code in the context of the affected process. This may facilitate a complete system compromise. Failed attacks may cause denial-of-service conditions.
Microsoft Remote Desktop Protocol is prone to a remote code-execution vulnerability.
Successful exploits will allow the attacker to execute arbitrary code in the context of the affected process. This may facilitate a complete system compromise. Failed attacks may cause denial-of-service conditions.
Exploit / POC
Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
Solution:
Vendor updates are available. Please see the references for details.
Solution:
Vendor updates are available. Please see the references for details.
References
Microsoft Remote Desktop Protocol CVE-2012-2526 Remote Code Execution Vulnerability
References:
References:
- Microsoft Homepage (Microsoft)