QID 92108

Date Published: 2024-01-16

QID 92108: Microsoft Windows Remote Desktop client Vulnerability for Windows Desktop (CVE-2024-21307)

Remote Desktop client for Windows Desktop to access Windows apps and desktops remotely from a different Windows device.

CVE-2024-21307: Remote Desktop client for Windows Desktop.
Affected Versions:-
Remote Desktop client Prior to 1.2.5105.
QID Detection Logic:(Authenticated)
This QID checks for a vulnerable Remote Desktop client

An attacker with control of a Remote Desktop Server could trigger a remote code execution (RCE) on the RDP client machine when a victim connects to the attacking server with the vulnerable Remote Desktop Client.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    Customers are advised to refer to Microsoft Advisory CVE-2024-21307
    Vendor References

    CVEs related to QID 92108

    Software Advisories
    Advisory ID Software Component Link
    CVE-2024-21307 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21307