Vulnerability Intelligence Report
CVE-2020-0610
A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Gateway (RD Gateway) Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0609.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:65.26%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Microsoft | Windows Server | 2019 (affected), 2016 (affected), 2012 (affected), 2012 R2 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
65.260%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Microsoft Corporation · Vendor · USA |
| Reserved | 2019-11-04T00:00:00 |
| Published | 2020-01-14T23:11:23 |
| Last Updated | 2024-08-04T06:11:04 |
Community Chatter & Buzz