PT-2024-9357 · Microsoft · Windows Remote Desktop Services+1

K0Shl

·

Published

2024-12-10

·

Updated

2025-11-27

·

CVE-2024-49115

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
The Windows Remote Desktop Services is affected by a critical security flaw that allows remote attackers to execute arbitrary code and impact the system. This issue is present in Windows Remote Desktop Services, but the specific vulnerable versions are not specified in the given text. The exploit for this issue can be found on various online platforms, but no direct link to a trusted source is provided here. It's worth noting that this security flaw could potentially affect a large number of Internet users, given the widespread use of Windows Remote Desktop Services. #WindowsRemoteDesktopServices #RemoteCodeExecution #Microsoft #Windows #RDP #CyberSecurity #RemoteAttack #CodeExecution #WindowsVulnerability

Fix

RCE

Use After Free

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-11047
CVE-2024-49115

Affected Products

Windows
Windows Remote Desktop Services