Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
Loading...
Loading...
Score 8.1 from GitHub Security Advisory (severity: HIGH) published 2024-12-12. NVD baseline CVSS 8.1; sources differ by 0.0.
Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
December 12, 2024
May 13, 2025
MITRE Common Weakness Enumeration — the root-cause categories this CVE belongs to.
Every vendor that published an advisory referencing this CVE — pulled from our cve_vendor_advisories aggregation. Click any row for the vendor's original advisory page.
See which npm, PyPI, Go, and Maven packages are affected by CVE-2024-49128
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.
msrc