CVE-2025-24045

Published Mar 11, 2025

Last updated 3 months ago

Overview

Description
Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
Source
secure@microsoft.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Primary
Base score
8.1
Impact score
5.9
Exploitability score
2.2
Vector string
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

secure@microsoft.com
CWE-591

Social media

Hype score
Not currently trending
  1. Microsoft Windows (Client & Server) admins & end-users: please review Microsoft updates https://t.co/WP7M3p2EWB https://t.co/No87ddVRpf Pay closer attention to Remote Desktop Services identified vulnerabilities (CVE-2025-24035, CVE-2025-24045, CVE-2025-25545, CVE-2025-

    @ikatzsolutions

    12 Jun 2025

    5 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. �� CVE-2025-24045 - Microsoft SharePoint Server - HIGH 🚨 🗓️ Date published 2025-03-11 17:16:26 UTC #MicrosoftSharePointServer #CyberSecurity #InfoSec #Vulnerability #TechNews https://t.co/I8ZnhPWEdr

    @vulns_space

    30 Mar 2025

    28 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2025-24045 🔴 HIGH (8.1) 🏢 Microsoft - Windows Server 2019 🏗️ 10.0.17763.0 🔗 https://t.co/0zENArJDi1 #CyberCron #VulnAlert #InfoSec https://t.co/Lv1YrIgjTS

    @cybercronai

    13 Mar 2025

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. Vulnerabilities in Windows Remote Desktop Services (RDS) Microsoft has released its March security update, addressing 57 vulnerabilities across its product range, including six critical flaws. Among the critical vulnerabilities are CVE-2025-24035 and CVE-2025-24045, both Remote…

    @juniorp4443

    12 Mar 2025

    47 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2025-24045 Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. https://t.co/ePSlPgBbp3

    @CVEnew

    11 Mar 2025

    95 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.