CyberRota Analysis
AI-GeneratedA vulnerability in Windows Remote Desktop Services allows an authorized attacker to exploit missing authentication for critical functions, enabling local privilege escalation. This could lead to unauthorized access and control over affected systems. Organizations using Windows Remote Desktop Services should prioritize addressing this issue to mitigate potential security risks.
CVE
CVE-2026-61364
Severity
HIGH
CVSS
7.8
EPSS
0.28%
Windows
Original NVD Description
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)