一、漏洞说明

2019年5月15日微软发布安全补丁修复了CVE编号为CVE-2019-0708的Windows远程桌面服务(RDP)远程代码执行漏洞,该漏洞在不需身份认证的情况下即可远程触发,危害与影响面极大。

二、漏洞影响版本

Windows 7 X86-bit Systems Service Pack 1
Windows 7 x64-based Systems Service Pack 1
Windows Server 2008 X86-bit Systems Service Pack 2
Windows Server 2008 X86-bit Systems Service Pack 2 (Server Core installation)
Windows Server 2008 Itanium-Based Systems Service Pack 2
Windows Server 2008 x64-based Systems Service Pack 2
Windows Server 2008 x64-based Systems Service Pack 2 (Server Core installation)
Windows Server 2008 R2 Itanium-Based Systems Service Pack 1
Windows Server 2008 R2 x64-based Systems Service Pack 1
Windows Server 2008 R2 x64-based Systems Service Pack 1 (Server Core installation)
Windows XP SP3 x86
Windows XP Professional x64 Edition SP2
Windows XP Embedded SP3 x86
Windows Server 2003 SP2 x86
Windows Server 2003 x64 Edition SP2
注:Windows 8和windows10以及之后的版本不受此漏洞影响

三、演示环境

Windows 7 SP1 X64 | IP ADD :10.211.55.28

Kali linux 2020.1 | IP ADD 10.211.55.30

四、演示步骤

获取成功