Tag
#Windows RDP Client
CVE-2023-28290: Microsoft Remote Desktop app for Windows Information Disclosure Vulnerability
**What type of information could be disclosed by this vulnerability?** An attacker who successfully exploited this vulnerability could recover plaintext from TLS-protected data.
CVE-2023-28267: Remote Desktop Protocol Client Information Disclosure Vulnerability
**What type of information could be disclosed by this vulnerability?** An attacker who successfully exploited this vulnerability could potentially read small portions of heap memory.
CVE-2023-28228: Windows Spoofing Vulnerability
**How could an attacker successfully exploit this vulnerability?** An attacker could convince a user on the target device to open a maliciously crafted HTA file designed to appear as a legitimately signed WIM file (Windows Imaging Format).