Impact
An untrusted pointer dereference in Windows Remote Desktop Services allows an authorized local attacker to elevate their privileges to that of a system administrator, facilitating full control over the compromised machine. The vulnerability stems from improper validation of memory pointers (CWE‑822) and could enable the attacker to execute arbitrary code or modify system settings. No additional details are provided about remote exploitation; it is inferred that the attacker be able to authenticate to the target system through Remote Desktop Services to trigger the flaw.
Affected Systems
Microsoft Windows 10 releases 1607, 1809, 21H2, and 22H2; Windows 11 releases 23H2, 24H2, 25H2, and 26H1; and Windows Server editions 2012, 2012 R2, 2016, 2019, 2022, and 2025, including Server Core installations. The flaw applies to the Windows Remote Desktop Services component on these operating systems.
Risk and Exploitability
The vulnerability carries a CVSS score of 7.8, indicating high severity, but its EPSS score is currently unavailable and it is not listed in the CISA KEV catalog. The likely attack vector is a local attacker who has already authenticated to the target machine via Remote Desktop Services; such a user could craft input that triggers the unchecked pointer dereference. Because of the privilege escalation nature of the flaw, exploitation could lead to full compromise of the host, including data exfiltration, lateral movement, or persistence.
OpenCVE Enrichment