- Description
- Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
- Source
- secure@microsoft.com
- NVD status
- Analyzed
- Products
- remote_desktop_web_client, windows_admin_center
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- HIGH
- secure@microsoft.com
- CWE-359
- Hype score
- Not currently trending
🚨*CVE* CVE-2026-56171 Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network. https://t.co/ksx8IEVKYz ----- Traducción: CVE-2026-56171 Exposición de infor… https://t.co/utmtNg
@infoflowcloud
17 Jul 2026
32 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
As if Tuesday wasn't enough, #Microsoft released 4 patches yesterday: CVE-2026-56171: RDP Information Disclosure Vulnerability CVE-2026-58598: Backup Service EoP Vulnerability CVE-2026-58643: Admin Center Spoofing Vulnerability CVE-2026-59117: Windows Terminal RCE Vulnerability
@dustin_childs
17 Jul 2026
1011 Impressions
0 Retweets
9 Likes
6 Bookmarks
0 Replies
1 Quote
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:remote_desktop_web_client:*:*:*:*:*:*:*:*",
"matchCriteriaId": "2F96B728-7D9C-4A8F-9C53-71316A97CF61",
"versionEndExcluding": "2.1.65.2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:microsoft:windows_admin_center:*:*:*:*:*:*:*:*",
"matchCriteriaId": "6B676562-D90E-4904-B4A6-4DA8C7A58C2D",
"versionEndExcluding": "2606",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]