Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Microsoft Windows Remote Access Connection Manager Null Pointer Dereference Denial-of-Service Vulnerability

Vulnerability

A null pointer dereference vulnerability has been identified in the Windows Remote Access Connection Manager. This vulnerability allows an unauthorized attacker to cause a local denial-of-service condition.

Impact

Exploitation of this vulnerability leads to a local denial-of-service condition, causing the system to become unresponsive or unavailable.

Remediation

Users can apply the security update KB5077179 for Windows 11, KB5075999 for Windows Server 2016, and KB5075904 for Windows 10 Version 22H2. For Windows Server 2022, the security update is KB5075906. Instructions for downloading these security updates are available on the Microsoft Update Catalog.

Added: Feb 10, 2026, 6:29 PM
Updated: Feb 11, 2026, 1:46 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.4
remediation
0.0
relevance
2.7
threat
8.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.