Junglewise Threat Intelligence

CVE-2026-69338: Microsoft Remote Desktop Gateway Service use-after-free privilege escalation

CVE-2026-69338 · Severity: high · CVSS 7.1 · Published 2026-09-08

Vendors: Microsoft.

Executive brief

Microsoft's Remote Desktop Gateway Service, a component used to securely broker Remote Desktop connections in enterprise networks, contains a use-after-free memory vulnerability. An authorized attacker with network access to the service can exploit this flaw to elevate their privileges on the affected system, potentially gaining administrative control.

Technical details

The vulnerability is a use-after-free condition in Remote Desktop Gateway Service that permits privilege escalation. An authorized attacker with network connectivity to the service can trigger the memory flaw to execute arbitrary code with elevated privileges. The attack requires authentication but not necessarily full administrative credentials. Patches are available through Microsoft security updates.

Affected products

  • Microsoft Remote Desktop Gateway Service

Timeline

  • 2026-09-08: disclosed

References