CVE-2025-21330

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 14, 2025
CWE ID 400

Summary

CVE-2025-21330 is a Denial of Service (DoS) vulnerability affecting Windows Remote Desktop Services. An attacker can exploit this issue by sending specially crafted packets to the Remote Desktop Service port, leading to a memory consumption issue on the target system. The result is a denial of service condition, preventing legitimate users from accessing the service until the system is restarted. Microsoft has released a patch to address this issue, and administrators are encouraged to apply it as soon as possible to protect their systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share