CVE-2023-24905: Remote Desktop Client Remote Code Execution Vulnerability
Published May 9, 2023
·Updated
Remote Desktop Client Remote Code Execution Vulnerability
Affected Software
18 affected componentsFixes available
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows 10 20h2<10.0.19042.2965
Microsoft Windows 10 21h2<10.0.19044.2965
Microsoft Windows 10 22h2<10.0.19045.2965
Microsoft Windows 11 21h2<10.0.22000.1936
Microsoft Windows 11 22h2<10.0.22000.1702
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Remediation
Event History
May 9, 2023
CVE Published
07:00 AM
Data Sourced
07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Description
CVE Published
via MITRE·05:02 PM
Data Sourced
via MITRE·05:02 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-24905?
CVE-2023-24905 is a remote code execution vulnerability in the Remote Desktop Client.
2
What is the severity of CVE-2023-24905?
The severity of CVE-2023-24905 is high, with a severity value of 7.8.
3
Which software products are affected by CVE-2023-24905?
Microsoft Windows 11 (21H2, 22H2) and Microsoft Windows 10 (20H2, 21H2, 22H2) are affected by CVE-2023-24905.
4
How can I fix CVE-2023-24905?
To fix CVE-2023-24905, apply the appropriate patches provided by Microsoft's security updates.
5
Where can I find more information about CVE-2023-24905?
You can find more information about CVE-2023-24905 on the Microsoft Security Response Center website.