Microsoft Windows Remote Desktop Services Privilege Escalation Vulnerability

Vulnerability

A use-after-free vulnerability has been identified in Windows Remote Desktop Services, allowing an authorized attacker to locally elevate privileges. This vulnerability requires exploitation of a race condition.

Impact

Successful exploitation of this vulnerability could allow an attacker to gain administrator privileges.

Remediation

Users can download the security update for this vulnerability through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5066791, KB5066835, KB5066780, KB5066836, KB5066873, KB5066875, and KB5066586.

Added: Oct 14, 2025, 6:44 PM
Updated: Oct 14, 2025, 9:15 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
2.9
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.