CVE-2016-0036Microsoft Windows Server 2012 vulnerability

CWE-2645 documents4 sources
Severity
8.1HIGHNVD
EPSS
17.4%
top 4.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 10
Latest updateMay 14

Description

The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote authenticated users to execute arbitrary code via crafted data, aka "Remote Desktop Protocol (RDP) Elevation of Privilege Vulnerability."

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

1
GHSA
GHSA-8822-37cq-2j6g: The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 82022-05-14

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday - February 20162016-02-09
Talos
Microsoft Patch Tuesday - February 20162016-02-09

💬Community

1
Bugzilla
CVE-2016-1514 libebml: EbmlUnicodeString Heap Information Leak2017-01-12