<img alt="" src="https://secure.hims1nice.com/151009.png" style="display:none;">
Skip to main content

Security Update: Remote Desktop Services Require Update to Prevent Worm

It is important that affected systems are patched as quickly as possible. Microsoft released fixes for a critical ...

Brad Watson
Posted by Brad Watson
Security Update: Remote Desktop Services Require Update to Prevent Worm
image-3

In today's fast-paced business landscape, staying ahead of the competition requires efficient and effective solutions. According to Microsoft’s Work Trend Index, nearly 70% of employee report that they don’t have sufficient time in the day to focus on “work”, with more time being spent Communicating than Creating.

Microsoft 365 Copilot is designed, with Microsoft’s cloud trust platform at its core, to allow for employees to both be more productive, reduce the time spent searching for information, performing mundane tasks, and other low-value activities.

It is important that affected systems are patched as quickly as possible.

Microsoft released fixes for a critical Remote Code Execution vulnerability, CVE-2019-0708, in Remote Desktop Services – formerly known as Terminal Services – that affects some older versions of Windows. 

Important - Security Alert

The Remote Desktop Protocol (RDP) itself is not vulnerable. This vulnerability is pre-authentication and requires no user interaction.

The vulnerability is ‘wormable’, meaning that any future malware that exploits this vulnerability could propagate from vulnerable computer to vulnerable computer in a similar way as the WannaCry malware spread across the globe in 2017. 

While there has been no observed exploitation of this vulnerability, it is highly likely that malicious actors will write an exploit for this vulnerability and incorporate it into their malware. 

It is important that affected systems are patched as quickly as possible. Vulnerable in-support systems include Windows 7, Windows Server 2008 R2, and Windows Server 2008. Out-of-support systems include Windows 2003 and Windows XP.

Details and Patches

TechNet Blog

Microsoft Security Update Guide