CVE-2020-0611

Description

A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka Remote Desktop Client Remote Code Execution Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
8.104

Associated Vulnerability

VulnerabilityOS Platform
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB4534306)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB4534306)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1903 for x86-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1903 for x64-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server, version 1909 for x64-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server, version 1903 for x64-based Systems (KB4528760)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x64-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2016 (1803) for x64-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1803 for x86-based Systems (KB4534293)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4534309)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB4534309)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB4534309)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB4534297)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4534297)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB4534297)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2019 for x64-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB4534273)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4534276)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4534276)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB4534288)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB4534283)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4534271)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4534271)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2016 for x64-based Systems (KB4534271)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4534314)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB4534314)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB4534314)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB4534310)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4534310)Windows
Windows Search Indexer Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB4534310)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-281402020-01 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4534306)
PATCH-281412020-01 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4534306)
PATCH-281552020-01 Cumulative Update for Windows 10 Version 1903 for x86-based Systems (KB4528760)
PATCH-281562020-01 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4528760)
PATCH-281572020-01 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB4528760)
PATCH-281582020-01 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4528760)
PATCH-281592020-01 Cumulative Update for Windows Server, version 1909 for x64-based Systems (KB4528760)
PATCH-281602020-01 Cumulative Update for Windows Server, version 1903 for x64-based Systems (KB4528760)
PATCH-281492020-01 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4534293)
PATCH-281502020-01 Cumulative Update for Windows Server 2016 (1803) for x64-based Systems (KB4534293)
PATCH-281512020-01 Cumulative Update for Windows 10 Version 1803 for x86-based Systems (KB4534293)
PATCH-281032020-01 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB4534309)
PATCH-281042020-01 Security Only Quality Update for Windows 8.1 for x64-based Systems (KB4534309)
PATCH-281052020-01 Security Only Quality Update for Windows 8.1 for x86-based Systems (KB4534309)
PATCH-281242020-01 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB4534297)
PATCH-281252020-01 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB4534297)
PATCH-281262020-01 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB4534297)
PATCH-281522020-01 Cumulative Update for Windows Server 2019 for x64-based Systems (KB4534273)
PATCH-281532020-01 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB4534273)
PATCH-281542020-01 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB4534273)
PATCH-281472020-01 Cumulative Update for Windows 10 Version 1709 for x86-based Systems (KB4534276)
PATCH-281482020-01 Cumulative Update for Windows 10 Version 1709 for x64-based Systems (KB4534276)
PATCH-281062020-01 Security Only Quality Update for Windows Server 2012 for x64-based Systems (KB4534288)
PATCH-281272020-01 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB4534283)
PATCH-281422020-01 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4534271)
PATCH-281432020-01 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4534271)
PATCH-281442020-01 Cumulative Update for Windows Server 2016 for x64-based Systems (KB4534271)
PATCH-281002020-01 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB4534314)
PATCH-281012020-01 Security Only Quality Update for Windows 7 for x86-based Systems (KB4534314)
PATCH-281022020-01 Security Only Quality Update for Windows 7 for x64-based Systems (KB4534314)
PATCH-281212020-01 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB4534310)
PATCH-281222020-01 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4534310)
PATCH-281232020-01 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB4534310)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234