Sep 2026: Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability
CVE-2026-57098 Published on September 8, 2026
Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability
Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.
Weakness Type
Improper Verification of Cryptographic Signature
The software does not verify, or incorrectly verifies, the cryptographic signature for data.
Products Associated with CVE-2026-57098
Want to know whenever a new CVE is published for Microsoft Remote Desktop? stack.watch will email you.
Affected Versions
Microsoft Remote Desktop client for Windows Desktop:- Version 1.2.0.0 and below 1.2.7279.0 is affected.