CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

microsoft

windows_app

10 known vulnerabilities · sorted by CVSS score

CVE-2025-48817
HIGH8.8

Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

microsoft / remote_desktop_client+22
Network
Published Jul 8, 2025
CVE-2025-26645
HIGH8.8

Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

microsoft / windows_10_1507+21
Network
Published Mar 11, 2025
CVE-2025-29966
HIGH8.8

Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.

microsoft / remote_desktop+27
Network
Published May 13, 2025
CVE-2025-58718
HIGH8.8

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

microsoft / remote_desktop_client+23
Network
Published Oct 14, 2025
CVE-2024-49105
HIGH8.4

Remote Desktop Client Remote Code Execution Vulnerability

microsoft / remote_desktop_client+20
Network
Published Dec 12, 2024
CVE-2025-27487
HIGH8.0

Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.

microsoft / remote_desktop_client+20
Network
Published Apr 8, 2025
CVE-2020-0919
HIGH7.8

An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft Remote Desktop App for Mac Elevation of Privilege Vulnerability'.

microsoft / windows_app
Local
Published Apr 15, 2020
CVE-2025-32715
MEDIUM6.5

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

microsoft / remote_desktop_client+20
Network
Published Jun 10, 2025
CVE-2026-23656
MEDIUM5.9

Insufficient verification of data authenticity in Windows App Installer allows an unauthorized attacker to perform spoofing over a network.

microsoft / windows_app
Network
Published Mar 10, 2026
CVE-2026-21517
MEDIUM4.7

Improper link resolution before file access ('link following') in Windows App for Mac allows an authorized attacker to elevate privileges locally.

microsoft / windows_app
Local
Published Feb 10, 2026