
An attacker who successfully exploited this vulnerability could read arbitrary files via an XML external entity (XXE) declaration. and I have them neatly defined in RDCManager by PROD, STAGE, TEST, DEV and by Application System.ĬVE-2020-0765 | Remote Desktop Connection Manager Information Disclosure VulnerabilityĪn information disclosure vulnerability exists in the Remote Desktop Connection Manager (RDCMan) application when it improperly parses XML input containing a reference to an external entity.


Due to vulnerability, Microsoft is deprecating RDCMan (LINK listed below)ĭoes anyone have a recommendation on a replacement RDCMan? I have over 200 SQL Servers (VM's & Physcial's) that I connect to.
