CVE-2020-16863Microsoft Windows 7 vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
EPSS
16.6%
top 5.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 16
Latest updateMay 24

Description

A denial of service vulnerability exists in Windows Remote Desktop Service when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could cause the Remote Desktop Service on the target system to stop responding. To exploit this vulnerability, an attacker would need to run a specially crafted application against a server which provides Remote Desktop Service. The update addresses the vulnerability by c

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Patches

🔴Vulnerability Details

1
GHSA
GHSA-69gr-hfqx-6mvx: A denial of service vulnerability exists in Windows Remote Desktop Service when an attacker connects to the target system using RDP and sends speciall2022-05-24

📋Vendor Advisories

1
Microsoft
Windows Remote Desktop Service Denial of Service Vulnerability2020-10-13
CVE-2020-16863 — Microsoft Windows 7 vulnerability | cvebase