CVE-2026-57098
Microsoft · Published September 8, 2026
7.5
CVSS v3.1
HIGHPatch availableGet patch
Description
Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability. Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.
Affected Products
- Remote Desktop client for Windows Desktop
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C