Microsoft Windows Remote Assistance Security Feature Bypass Vulnerability

Vulnerability

A protection mechanism failure vulnerability has been identified in Windows Remote Assistance. This vulnerability allows an unauthorized attacker to locally bypass a security feature, specifically evading Mark of the Web defenses. The issue arises from a failure in the protection mechanism, which could be exploited by convincing a user to open a specially crafted file.

Impact

Exploitation of this vulnerability could lead to unauthorized bypassing of security features in Windows Remote Assistance, allowing attackers to evade Mark of the Web defenses.

Remediation

Users can download the security update for this vulnerability through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5073724 for Windows 10, KB5073722 for Windows Server 2016, and KB5073696 for Windows Server 2012 R2.

Added: Jan 13, 2026, 8:13 PM
Updated: Jan 13, 2026, 8:13 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.3
exploitability
4.4
remediation
7.7
relevance
2.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.