CyberRota Analysis
AI-GeneratedWindows Remote Desktop Services is vulnerable due to a missing authentication mechanism for a critical function, enabling an authorized attacker to escalate privileges locally. This flaw poses a significant risk as it could allow attackers to gain elevated access to sensitive system resources. Organizations utilizing Windows Remote Desktop Services should prioritize patching this vulnerability to mitigate potential exploitation.
CVE
CVE-2026-61356
Severity
HIGH
CVSS
7.8
EPSS
0.28%
Windows
Original NVD Description
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)