Executive brief
Microsoft's Remote Desktop Gateway Service, a component used to securely broker Remote Desktop connections in enterprise networks, contains a use-after-free memory vulnerability. An authorized attacker with network access to the service can exploit this flaw to elevate their privileges on the affected system, potentially gaining administrative control.
Technical details
The vulnerability is a use-after-free condition in Remote Desktop Gateway Service that permits privilege escalation. An authorized attacker with network connectivity to the service can trigger the memory flaw to execute arbitrary code with elevated privileges. The attack requires authentication but not necessarily full administrative credentials. Patches are available through Microsoft security updates.
Affected products
- Microsoft Remote Desktop Gateway Service
Timeline
- 2026-09-08: disclosed