vendor:
Remote Desktop Client
by:
Unknown
7,8
CVSS
HIGH
Arbitrary Code Execution
78
CWE
Product Name: Remote Desktop Client
Affected Version From: 8.0.32
Affected Version To: Prior
Patch Exists: Yes
Related CWE: None
CPE: a:microsoft:remote_desktop_client
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Mac OS X
2020
Microsoft Remote Desktop for Mac Arbitrary Code Execution Vulnerability
A vulnerability exists in Microsoft Remote Desktop for Mac that allows a remote attacker to execute arbitrary code on the target machine. User interaction is needed to exploit this issue, but a single click on a link (sent via mail, iMessage, etc.) is sufficient to trigger the vulnerability. The vulnerability exists to the way the application handles rdp urls. In the rdp url schema it's possible to specify a parameter that will make the user's home directory accessible to the server without any warning or confirmation request. If an attacker can trick a user to open a malicious rdp url, he/she can read and write any file within the victim's home directory.
Mitigation:
Microsoft recommends users to upgrade to the latest version of Microsoft Remote Desktop for Mac.