Windows Remote Desktop Protocol (RDP)
by Microsoft
CVEs (10)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-1326 | Hig | 0.49 | 7.5 | 0.06 | Oct 10, 2019 | A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Protocol (RDP) Denial of Service Vulnerability'. | ||
| CVE-2025-55340 | Hig | 0.46 | 7.0 | 0.00 | Oct 14, 2025 | Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally. | ||
| CVE-2021-41371 | Med | 0.29 | 4.4 | 0.02 | Nov 10, 2021 | Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability | ||
| CVE-2021-38631 | Med | 0.29 | 4.4 | 0.02 | Nov 10, 2021 | Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability | ||
| CVE-2026-56171 | Hig | 0.00 | 7.1 | 0.00 | Jul 17, 2026 | Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57982 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network. | ||
| CVE-2026-50497 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-50445 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57979 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-55003 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. |
- risk 0.49cvss 7.5epss 0.06
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Protocol (RDP) Denial of Service Vulnerability'.
- risk 0.46cvss 7.0epss 0.00
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.
- risk 0.29cvss 4.4epss 0.02
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
- risk 0.29cvss 4.4epss 0.02
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
- risk 0.00cvss 7.1epss 0.00
Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 6.5epss 0.01
Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network.
- risk 0.00cvss 6.5epss 0.01
Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 6.5epss 0.01
Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 6.5epss 0.01
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 6.5epss 0.01
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.