PT-2026-58236 · Microsoft · Windows

CVE-2026-54990

·

Published

2026-07-14

·

Updated

2026-07-20

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows 11 (affected versions not specified) Windows Server 2025 (affected versions not specified)
Description A heap-based buffer overflow in the Remote Desktop Client allows an unauthorized and unauthenticated attacker to execute arbitrary code remotely over a network, which can lead to full system compromise.
Recommendations Apply the latest security patches for Windows 11. Apply the latest security patches for Windows Server 2025.

Fix

DoS

RCE

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-54990

Affected Products

Windows