CyberICT

CVE-2026-57098

Microsoft · Published September 8, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability. Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.

Affected Products

  • Remote Desktop client for Windows Desktop

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C