AplusWebMaster
Topic Starter
FYI…
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1794
Description
Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which allows remote attackers to spoof public keys of legitimate servers and conduct man-in-the-middle attacks.
References
* MISC: http://www.oxid.it/downloads/rdp-gbu.pdf
* BID:13818
* URL: http://www.securityfocus.com/bid/13818
* SECUNIA:15605
* URL: http://secunia.com/advisories/15605/
- http://www.uscert.gov/cas/bulletins/SB05-159.html#MSRemote
"Windows 2000 Advanced Server, Windows 2000 Datacenter Server, Windows 2000 Server, Windows Server 2003 Datacenter Edition, Windows Server 2003 Enterprise Edition, Windows Server 2003 Standard Edition, Microsoft Windows Server 2003 Web Edition, Windows XP Home Edition, Windows XP Professional
…No workaround or patch available at time of publishing…
…A Proof of Concept exploit has been published…"

- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1794
Description
Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which allows remote attackers to spoof public keys of legitimate servers and conduct man-in-the-middle attacks.
References
* MISC: http://www.oxid.it/downloads/rdp-gbu.pdf
* BID:13818
* URL: http://www.securityfocus.com/bid/13818
* SECUNIA:15605
* URL: http://secunia.com/advisories/15605/
- http://www.uscert.gov/cas/bulletins/SB05-159.html#MSRemote
"Windows 2000 Advanced Server, Windows 2000 Datacenter Server, Windows 2000 Server, Windows Server 2003 Datacenter Edition, Windows Server 2003 Enterprise Edition, Windows Server 2003 Standard Edition, Microsoft Windows Server 2003 Web Edition, Windows XP Home Edition, Windows XP Professional
…No workaround or patch available at time of publishing…
…A Proof of Concept exploit has been published…"