Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-49132: Windows Remote Desktop Services Remote Code Execution Vulnerability

How could an attacker exploit this vulnerability?

An attacker could successfully exploit this vulnerability by connecting to a system with the Remote Desktop Gateway role, triggering the race condition to create a use-after-free scenario, and then leveraging this to execute arbitrary code.

Microsoft Security Response Center
#vulnerability#windows#rce#Windows Remote Desktop#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-21380: Azure Marketplace SaaS Resources Information Disclosure Vulnerability