Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:REMOTE:MS-RDP-ACTIVEX-RCE

Severity

High

Recommended

Yes

Recommended Action

Drop

Category

APP

Keywords

Microsoft Windows Remote Desktop Client Unsafe ActiveX Control Remote Code Execution

Release Date

2013/04/08

Update Number

2252

Supported Platforms

idp-4.0.110090709+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+

HTTP: Microsoft Windows Remote Desktop Client Unsafe ActiveX Control Remote Code Execution


This signature detects attempts to exploit a known vulnerability against Microsoft Windows Remote Desktop Client. A successful attack can lead to arbitrary code execution.

Extended Description

Microsoft Communicator 2007 R2, Lync 2010, Lync 2010 Attendee, and Lync Server 2013 do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via an invitation that triggers access to a deleted object, aka "Lync RCE Vulnerability."

Affected Products

  • Microsoft lync 2010 (:attendee)
  • Microsoft lync 2010 (:x64)
  • Microsoft lync 2010 (:x86)
  • Microsoft lync_server 2013
  • Microsoft office_communicator 2007 (r2)

References

  • CVE: CVE-2013-1302
  • CVE: CVE-2013-1296

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out