Executive brief
A security vulnerability exists in the Windows Remote Desktop Protocol (RDP), which is used to remotely access and manage computers. An attacker could exploit this flaw to view sensitive information that they should not have access to. While the attack can be launched over a network, it requires a user to perform a specific action, such as clicking a link or connecting to a malicious server, before the information can be stolen.
Technical details
This vulnerability is classified as an out-of-bounds read (CWE-125) within the Windows Remote Desktop Protocol (RDP) implementation. An unauthenticated attacker can exploit this flaw over the network to disclose sensitive memory contents from the affected system. According to the CVSS vector, the attack has low complexity and requires no special privileges, but it does require user interaction (UI:R) to be successful. Microsoft has released security updates for various versions of Windows 10, Windows 11, and Windows Server 2012 R2 to address this issue.
Affected products
- Microsoft Windows 10 1607, 1809, 21H2, 22H2
- Microsoft Windows 11 24H2, 25H2, 26H1
- Microsoft Windows Server 2012 R2 All versions
Timeline
- 2026-07-14: disclosed
- 2026-07-14: advisory