Remote Desktop Client
by Microsoft
CVEs (54)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2011-0029 | Hig | 0.49 | 7.4 | 0.07 | Mar 9, 2011 | Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote… | ||
| CVE-2026-61924 | Med | 0.42 | 6.5 | 0.01 | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-61921 | Med | 0.42 | 6.5 | 0.01 | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-61918 | Med | 0.42 | 6.5 | 0.01 | Aug 11, 2026 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2025-32715 | Med | 0.42 | 6.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2023-29352 | Med | 0.42 | 6.5 | 0.01 | Jun 14, 2023 | Windows Remote Desktop Security Feature Bypass Vulnerability | ||
| CVE-2023-28267 | Med | 0.42 | 6.5 | 0.02 | Apr 11, 2023 | Remote Desktop Protocol Client Information Disclosure Vulnerability | ||
| CVE-2022-26940 | Med | 0.42 | 6.5 | 0.02 | May 10, 2022 | Remote Desktop Protocol Client Information Disclosure Vulnerability | ||
| CVE-2022-22015 | Med | 0.42 | 6.5 | 0.02 | May 10, 2022 | Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability | ||
| CVE-2022-24503 | Med | 0.35 | 5.4 | 0.02 | Mar 9, 2022 | Remote Desktop Protocol Client Information Disclosure Vulnerability | ||
| CVE-2026-50504 | Med | 0.00 | 6.5 | 0.01 | Jul 14, 2026 | Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-50474 | Hig | 0.00 | 8.8 | 0.01 | Jul 14, 2026 | Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-50330 | Hig | 0.00 | 7.5 | 0.01 | Jul 14, 2026 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network. | ||
| CVE-2026-54990 | Cri | 0.00 | 9.8 | 0.01 | Jul 14, 2026 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
- risk 0.49cvss 7.4epss 0.07
Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote…
- risk 0.42cvss 6.5epss 0.01
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- risk 0.42cvss 6.5epss 0.01
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- risk 0.42cvss 6.5epss 0.01
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- risk 0.42cvss 6.5epss 0.01
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- risk 0.42cvss 6.5epss 0.01
Windows Remote Desktop Security Feature Bypass Vulnerability
- risk 0.42cvss 6.5epss 0.02
Remote Desktop Protocol Client Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.02
Remote Desktop Protocol Client Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.02
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
- risk 0.35cvss 5.4epss 0.02
Remote Desktop Protocol Client Information Disclosure Vulnerability
- risk 0.00cvss 6.5epss 0.01
Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 8.8epss 0.01
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.5epss 0.01
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.
- risk 0.00cvss 9.8epss 0.01
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Page 3 of 3