Microsoft Remote Desktop Client For Windows Desktop vulnerabilities

25 known vulnerabilities affecting microsoft/remote_desktop_client_for_windows_desktop.

Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH19MEDIUM6

Vulnerabilities

Page 1 of 2
CVE-2025-58718HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.6599.02025-10-14
CVE-2025-58718 [HIGH] CWE-416 CVE-2025-58718: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-48817HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.6353.02025-07-08
CVE-2025-48817 [HIGH] CWE-23 CVE-2025-48817: Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code ove Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-32715MEDIUMCVSS 6.5≥ 1.2.0.0, < 1.2.6278.02025-06-10
CVE-2025-32715 [MEDIUM] CWE-125 CVE-2025-32715: Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
cvelistv5nvd
CVE-2025-29966HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.6228.02025-05-13
CVE-2025-29966 [HIGH] CWE-122 CVE-2025-29966: Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-29967HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.6228.02025-05-13
CVE-2025-29967 [HIGH] CWE-122 CVE-2025-29967: Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to exec Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-27487HIGHCVSS 8.0≥ 1.2.0.0, < 1.2.6081.02025-04-08
CVE-2025-27487 [HIGH] CWE-122 CVE-2025-27487: Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code ov Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-26645HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.6017.02025-03-11
CVE-2025-26645 [HIGH] CWE-23 CVE-2025-26645: Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code ove Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2024-49105HIGHCVSS 8.4≥ 1.2.0.0, < 1.2.5716.02024-12-12
CVE-2024-49105 [HIGH] CWE-284 CVE-2024-49105: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-43533HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.5709.02024-10-08
CVE-2024-43533 [HIGH] CWE-416 CVE-2024-43533: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-38131HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.5560.02024-08-13
CVE-2024-38131 [HIGH] CWE-591 CVE-2024-38131: Clipboard Virtual Channel Extension Remote Code Execution Vulnerability Clipboard Virtual Channel Extension Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-21307HIGHCVSS 7.5≥ 1.2.0.0, < 1.2.5105.02024-01-09
CVE-2024-21307 [HIGH] CWE-416 CVE-2024-21307: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-29362HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.4337.02023-06-14
CVE-2023-29362 [HIGH] CWE-122 CVE-2023-29362: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-29352MEDIUMCVSS 6.5≥ 1.2.0.0, < 1.2.4337.02023-06-14
CVE-2023-29352 [MEDIUM] CVE-2023-29352: Windows Remote Desktop Security Feature Bypass Vulnerability Windows Remote Desktop Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2023-28267MEDIUMCVSS 6.5≥ 1.2.0.0, < 1.2.4157.02023-04-11
CVE-2023-28267 [MEDIUM] CWE-126 CVE-2023-28267: Remote Desktop Protocol Client Information Disclosure Vulnerability Remote Desktop Protocol Client Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-30221HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.3317.02022-07-12
CVE-2022-30221 [HIGH] CVE-2022-30221: Windows Graphics Component Remote Code Execution Vulnerability Windows Graphics Component Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-22017HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.31302022-05-10
CVE-2022-22017 [HIGH] CVE-2022-22017: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-22015MEDIUMCVSS 6.5≥ 1.2.0.0, < 1.2.31302022-05-10
CVE-2022-22015 [MEDIUM] CVE-2022-22015: Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-26940MEDIUMCVSS 6.5≥ 1.2.0.0, < 1.2.31302022-05-10
CVE-2022-26940 [MEDIUM] CVE-2022-26940: Remote Desktop Protocol Client Information Disclosure Vulnerability Remote Desktop Protocol Client Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-21990HIGHCVSS 8.8≥ 1.2.0.0, < 1.2.2925.02022-03-09
CVE-2022-21990 [HIGH] CVE-2022-21990: Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-24503MEDIUMCVSS 5.4≥ 1.2.0.0, < 1.2.2925.02022-03-09
CVE-2022-24503 [MEDIUM] CVE-2022-24503: Remote Desktop Protocol Client Information Disclosure Vulnerability Remote Desktop Protocol Client Information Disclosure Vulnerability
cvelistv5nvd
Microsoft Remote Desktop Client For Windows Desktop vulnerabilities | cvebase