Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
No PoCs from references.
- https://github.com/MSeymenD/cve-2025-24035-rds-websocket-dos-test
- https://github.com/fkie-cad/nvd-json-data-feeds
- https://github.com/ghostbyt3/patch-tuesday
- https://github.com/nomi-sec/PoC-in-GitHub