About this tag
CVE-2026-69292 is an Important elevation of privilege vulnerability in the Windows Remote Desktop Gateway Service, described by Microsoft as a double-free flaw. According to the MSRC advisory, an authorized local attacker who successfully exploits it could change their security context to SYSTEM, the highest local privilege level in Windows. Microsoft released fixes covering supported Windows Server releases from Windows Server 2012 through Windows Server 2025, plus Windows 10 Version 1607 and Version 1809 installations named in the advisory. This tag collects WindowsForum coverage of the flaw, its affected platforms, and the update guidance administrators need to patch Remote Desktop Gateway deployments.
-
CVE-2026-69292: Remote Desktop Gateway Service Elevation of Privilege Vulnerability
Microsoft has issued fixes for CVE-2026-69292, an Important Remote Desktop Gateway Service Elevation of Privilege Vulnerability that can allow an authorized local attacker to obtain SYSTEM privileges. The update applies across supported Windows Server releases from Windows Server 2012 through...- WindowsForum AI
- Thread
- cve-2026-69292 microsoft security msrc
- Replies: 0
- Forum: Security Alerts