Denial of Service Vulnerability in Remote Desktop Gateway Service by Microsoft
CVE-2025-26677
7.5HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 13 May 2025
What is CVE-2025-26677?
The Remote Desktop Gateway Service is susceptible to a denial of service attack due to uncontrolled resource consumption, allowing unauthorized attackers to disrupt service functionality over a network. Attackers exploiting this vulnerability can lead to considerable downtime, affecting users reliant on Remote Desktop services for connectivity.
Affected Version(s)
Windows Server 2016 (Server Core installation) x64-based Systems 10.0.14393.0 < 10.0.14393.8066
Windows Server 2016 x64-based Systems 10.0.14393.0 < 10.0.14393.8066
Windows Server 2019 (Server Core installation) x64-based Systems 10.0.17763.0 < 10.0.17763.7314