CVE-2025-27482: Windows Remote Desktop Services Remote Code Execution Vulnerability
Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
Other sources
Windows Remote Desktop Services Remote Code Execution Vulnerability
— Microsoft
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-27482?
The severity of CVE-2025-27482 is classified as critical due to the potential for unauthorized code execution.
How do I fix CVE-2025-27482?
To fix CVE-2025-27482, apply the latest security patches provided by Microsoft for the affected Windows Server versions.
What products are affected by CVE-2025-27482?
CVE-2025-27482 affects several versions of Windows Server including 2016, 2019, 2022, and 2025.
What are the potential impacts of CVE-2025-27482?
The potential impacts of CVE-2025-27482 include unauthorized access to sensitive data and remote code execution.
Is there a workaround for CVE-2025-27482?
There are no publicly documented workarounds for CVE-2025-27482; applying patches is the recommended mitigation.