cognitive cybersecurity intelligence

News and Analysis

Search

Windows Remote Desktop Gateway UAF Vulnerability Allows Remote Code Execution

Windows Remote Desktop Gateway UAF Vulnerability Allows Remote Code Execution

Microsoft disclosed a critical vulnerability (CVE-2025-21297) in Remote Desktop Gateway that enables remote code execution due to a use-after-free bug. Discovered by VictorV, it affects multiple Windows Server versions. Successful exploitation requires concurrent socket connections to overwrite a global pointer. Microsoft released patches in May 2025; organizations must apply them urgently and monitor for unusual activity.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts