Security
Headlines
HeadlinesLatestCVEs

Tag

#Windows RDP Client

CVE-2023-28290: Microsoft Remote Desktop app for Windows Information Disclosure Vulnerability

**What type of information could be disclosed by this vulnerability?** An attacker who successfully exploited this vulnerability could recover plaintext from TLS-protected data.

Microsoft Security Response Center
#vulnerability#web#windows#microsoft#ssl#Windows RDP Client#Security Vulnerability
CVE-2023-28267: Remote Desktop Protocol Client Information Disclosure Vulnerability

**What type of information could be disclosed by this vulnerability?** An attacker who successfully exploited this vulnerability could potentially read small portions of heap memory.

CVE-2023-28228: Windows Spoofing Vulnerability

**How could an attacker successfully exploit this vulnerability?** An attacker could convince a user on the target device to open a maliciously crafted HTA file designed to appear as a legitimately signed WIM file (Windows Imaging Format).