CVEs (18)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 14Windows 10 1607 Windows 10 1809Windows 10 21h2+11 moreJun 17, 2026 Jun 9, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 15Remote Desktop Client Windows 10 1607Windows 10 1809+12 moreJun 19, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. |
1Microsoft 15Remote Desktop Client Windows 10 1607Windows 10 1809+12 moreJul 9, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 15Remote Desktop Client Windows 10 1607Windows 10 1809+12 moreJun 17, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreJun 17, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 15Remote Desktop Client Windows 10 1607Windows 10 1809+12 moreJul 9, 2026 Jun 9, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 15Remote Desktop Client Windows 10 1607Windows 10 1809+12 moreJul 9, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 14Windows 10 1607 Windows 10 1809Windows 10 21h2+11 moreJun 17, 2026 Jun 9, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. |
Insufficient verification of data authenticity in Windows App Installer allows an unauthorized attacker to perform spoofing over a network. |
Improper link resolution before file access ('link following') in Windows App for Mac allows an authorized attacker to elevate privileges locally. |
1Microsoft 18Remote Desktop Client Windows 10 1507Windows 10 1607+15 moreJun 17, 2026 Oct 14, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 17Remote Desktop Client Windows 10 1507Windows 10 1607+14 moreJun 17, 2026 Jul 8, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 17Remote Desktop Client Windows 10 1507Windows 10 1607+14 moreJun 17, 2026 Jun 10, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
1Microsoft 17Remote Desktop Windows 10 1507Windows 10 1607+14 moreJun 17, 2026 May 13, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network. |
1Microsoft 17Remote Desktop Client Windows 10 1507Windows 10 1607+14 moreJun 17, 2026 Apr 8, 2025 N/A· v4 8.0 HIGH· v3 N/A· v2 Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network. |
1Microsoft 16Remote Desktop Client Windows 10 1507Windows 10 1607+13 moreJun 17, 2026 Mar 11, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
1Microsoft 17Remote Desktop Client Windows 10 1507Windows 10 1607+14 moreJun 17, 2026 Dec 12, 2024 N/A· v4 8.4 HIGH· v3 N/A· v2 Remote Desktop Client Remote Code Execution Vulnerability |
1Microsoft 2Remote Desktop Windows AppJun 17, 2026 Apr 15, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft Remote Desktop App for Mac Elevation of Privilege Vulnerability'. |