Denial of Service Vulnerability in Remote Desktop Gateway Service by Microsoft
CVE-2025-26677
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 13 May 2025
Badges
What is CVE-2025-26677?
The Remote Desktop Gateway Service is susceptible to a denial of service attack due to uncontrolled resource consumption, allowing unauthorized attackers to disrupt service functionality over a network. Attackers exploiting this vulnerability can lead to considerable downtime, affecting users reliant on Remote Desktop services for connectivity.
Affected Version(s)
Windows Server 2016 (Server Core installation) x64-based Systems 10.0.14393.0 < 10.0.14393.8066
Windows Server 2016 x64-based Systems 10.0.14393.0 < 10.0.14393.8066
Windows Server 2019 (Server Core installation) x64-based Systems 10.0.17763.0 < 10.0.17763.7314
News Articles
References
EPSS Score
9% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- 👾
Exploit known to exist
- 📰
First article discovered by GBHackers News
Vulnerability published
Vulnerability Reserved