CVE-2022-24503: Remote Desktop Protocol Client Information Disclosure Vulnerability
Published Mar 8, 2022
·Updated
Remote Desktop Protocol Client Information Disclosure Vulnerability
Affected Software
61 affected componentsFixes available
Microsoft Windows 7
Microsoft Windows Server 2012 R2
Microsoft Windows 7
Microsoft Windows Server 2012 R2
Microsoft Windows Server=20H2
Microsoft Windows RT 8.1
Microsoft Windows Server 2012
Microsoft Windows Server 2012
Microsoft Remote Desktop client for Windows Desktop
Microsoft Windows 8.1 for x64-based systems
Microsoft Windows 8.1 for 32-bit systems
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1607
Microsoft Windows 10=1607
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10
Microsoft Windows 10
Microsoft Remote Desktop Windows<1.2.2925
Microsoft Windows 10
Microsoft Windows 10=20h2
Microsoft Windows 10=21h1
Microsoft Windows 10=21h2
Microsoft Windows 10=1607
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows 11
Microsoft Windows 11
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server=20h2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2008 R2
Microsoft Remote Desktop Client Windows<1.2.2925
Event History
Mar 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Mar 9, 2022
CVE Published
via MITRE·05:07 PM
Data Sourced
via MITRE·05:07 PM
DescriptionSeverity
Data Sourced
via NVD·05:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-24503?
CVE-2022-24503 has a severity rating of Important.
2
How do I fix CVE-2022-24503?
To fix CVE-2022-24503, apply the relevant security updates for your affected Microsoft software.
3
What types of systems are affected by CVE-2022-24503?
CVE-2022-24503 affects various versions of Microsoft Windows, Windows Server, and the Remote Desktop client.
4
Can CVE-2022-24503 lead to information disclosure?
Yes, CVE-2022-24503 can potentially lead to information disclosure through exposure of sensitive information.
5
What is the impact of CVE-2022-24503?
The impact of CVE-2022-24503 includes unauthorized access to sensitive information due to a vulnerability in the Remote Desktop Protocol.