← Back

Windows App

windows_app

Vendor: Microsoft • 18 CVEs

CVEs (18)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
14Windows 10 1607
Windows 10 1809Windows 10 21h2+11 more
Jun 17, 2026
Jun 9, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
15Remote Desktop Client
Windows 10 1607Windows 10 1809+12 more
Jun 19, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
1Microsoft
15Remote Desktop Client
Windows 10 1607Windows 10 1809+12 more
Jul 9, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
15Remote Desktop Client
Windows 10 1607Windows 10 1809+12 more
Jun 17, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
13Windows 10 1607
Windows 10 1809Windows 10 21h2+10 more
Jun 17, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
15Remote Desktop Client
Windows 10 1607Windows 10 1809+12 more
Jul 9, 2026
Jun 9, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
15Remote Desktop Client
Windows 10 1607Windows 10 1809+12 more
Jul 9, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
14Windows 10 1607
Windows 10 1809Windows 10 21h2+11 more
Jun 17, 2026
Jun 9, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
1Microsoft
1Windows App
Jun 17, 2026
Mar 10, 2026
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Insufficient verification of data authenticity in Windows App Installer allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Windows App
Jun 17, 2026
Feb 10, 2026
N/A· v4
7.0 HIGH· v3
N/A· v2
Improper link resolution before file access ('link following') in Windows App for Mac allows an authorized attacker to elevate privileges locally.
1Microsoft
18Remote Desktop Client
Windows 10 1507Windows 10 1607+15 more
Jun 17, 2026
Oct 14, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
17Remote Desktop Client
Windows 10 1507Windows 10 1607+14 more
Jun 17, 2026
Jul 8, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
17Remote Desktop Client
Windows 10 1507Windows 10 1607+14 more
Jun 17, 2026
Jun 10, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
1Microsoft
17Remote Desktop
Windows 10 1507Windows 10 1607+14 more
Jun 17, 2026
May 13, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.
1Microsoft
17Remote Desktop Client
Windows 10 1507Windows 10 1607+14 more
Jun 17, 2026
Apr 8, 2025
N/A· v4
8.0 HIGH· v3
N/A· v2
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
1Microsoft
16Remote Desktop Client
Windows 10 1507Windows 10 1607+13 more
Jun 17, 2026
Mar 11, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
1Microsoft
17Remote Desktop Client
Windows 10 1507Windows 10 1607+14 more
Jun 17, 2026
Dec 12, 2024
N/A· v4
8.4 HIGH· v3
N/A· v2
Remote Desktop Client Remote Code Execution Vulnerability
1Microsoft
2Remote Desktop
Windows App
Jun 17, 2026
Apr 15, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft Remote Desktop App for Mac Elevation of Privilege Vulnerability'.