Executive brief
Windows Remote Desktop Protocol (RDP) contains a flaw in null termination handling that allows unauthenticated attackers to read sensitive information over a network connection. RDP is a core Windows component used for remote system access and administration. This vulnerability could expose confidential data without requiring valid credentials or user interaction.
Technical details
The vulnerability is an improper null termination issue in the Windows Remote Desktop Protocol implementation. It allows unauthenticated, network-based attackers to disclose information from affected systems. The flaw likely results in buffer over-read or information leakage when RDP processes improperly terminated protocol messages. No authentication is required; the attack is delivered over the network to standard RDP listening ports. An attacker can extract sensitive data from memory or process state without established credentials.
Affected products
- Microsoft Windows Remote Desktop Protocol
Timeline
- 2026-09-08: disclosed