CVE-2025-24035 — Sensitive Data Storage in Improperly Locked Memory in Microsoft Windows 10 Version 1507
Severity
8.1HIGHNVD
EPSS
0.5%
top 34.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 11
Description
Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9
Affected Packages26 packages
🔴Vulnerability Details
2📋Vendor Advisories
1🕵️Threat Intelligence
7Tenable▶
Microsoft’s March 2025 Patch Tuesday Addresses 56 CVEs (CVE-2025-26633, CVE-2025-24983, CVE-2025-24993)↗2025-03-11