mobileniom.blogg.se

Windows remote desktop management
Windows remote desktop management




Microsoft disclosed today in an update to the initial security advisory that the flaw was fixed in RDCMan 2.82, released on July 27 through the Sysinternals documentation website. While the company didn't share any details on the security flaw addressed in RDCMan 2.8, the patched vulnerability was not the one that led to the app being discontinued last year. Bug fixes (including a security bug fix) and single-file executable (a Sysinternals attribute). Lots of you have asked: first Sysinternals RDCMan release is coming next week.

windows remote desktop management

"Look for its Sysinternals debut in the near future." "Good news for RDCMan (Remote Desktop Connection Manager) fans (like me): we've saved it from abandonment by bringing into Sysinternals," Russinovich said in February, confirming the tool's revival.

windows remote desktop management

However, as Microsoft Azure CTO Mark Russinovich revealed earlier this year, the company added RDCMan to the Windows Sysinternals toolkit and released version 2.8 in late June. "An attacker who successfully exploited this vulnerability could read arbitrary files via an XML external entity (XXE) declaration."Īttackers could exploit the bug (tracked as CVE-2020-0765) by tricking authenticated targets into opening RDG files containing maliciously crafted XML content.

windows remote desktop management

"An information disclosure vulnerability exists in the Remote Desktop Connection Manager (RDCMan) application when it improperly parses XML input containing a reference to an external entity," Microsoft explained in the March 2020 security advisory. RDCMan is a Windows RDP (Remote Desktop Protocol) client used by system admins to manage multiple remote desktop connections.Īfter discontinuing the app, Microsoft advised customers to switch to Windows built-in Remote Desktop Connection (%windir%\system32\mstsc.exe) or the universal Remote Desktop client. Microsoft has revived the Remote Desktop Connection Manager (RDCMan) app that was deprecated last year due to an important severity information disclosure bug the company decided not to fix.






Windows remote desktop management