CVE-2019-1489

HIGH

Windows XP - Information Disclosure via Remote Desktop Protocol

Title source: llm
STIX 2.1

Description

An information disclosure vulnerability exists when the Windows Remote Desktop Protocol (RDP) fails to properly handle objects in memory, aka 'Remote Desktop Protocol Information Disclosure Vulnerability'.

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0774
EPSS Percentile 93.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-200
Status published
Products (1)
microsoft/windows_xp
Published Dec 10, 2019
Tracked Since Feb 18, 2026