Remote Desktop Protocol Vulnerability in Microsoft Terminal Server
CVE-2005-1794
Currently unrated
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 1 June 2005
Badges
👾 Exploit Exists🟡 Public PoC🟣 EPSS 11%
What is CVE-2005-1794?
A vulnerability exists in Microsoft Terminal Server's implementation of Remote Desktop Protocol (RDP) 5.2, where an RSA private key is improperly stored in the mstlsapi.dll file. This flaw allows remote attackers to spoof the public keys of legitimate servers, making it possible to conduct man-in-the-middle attacks. By exploiting this vulnerability, an attacker can impersonate a trusted server, potentially intercepting sensitive communications and compromising the security of affected systems.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.