CVE-2025-55340: Windows Remote Desktop Protocol Security Feature Bypass
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.
Other sources
Windows Remote Desktop Protocol Security Feature Bypass
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-55340?
CVE-2025-55340 is classified as a security feature bypass vulnerability affecting the Windows Remote Desktop Protocol.
How do I fix CVE-2025-55340?
To fix CVE-2025-55340, apply the latest security patch provided by Microsoft for the affected Windows versions.
Which versions of Windows are affected by CVE-2025-55340?
CVE-2025-55340 affects various versions including Windows Server 2025, Windows 11 (multiple versions), and Windows 10 (multiple versions).
Can CVE-2025-55340 be exploited remotely?
CVE-2025-55340 requires local access for exploitation, as it permits an authorized attacker to bypass a security feature.
Is a workaround available for CVE-2025-55340?
Currently, the recommended action for mitigating CVE-2025-55340 is to apply the official security patches from Microsoft.