CVE-2021-1669 is a Windows Remote Desktop Security Feature Bypass Vulnerability affecting Microsoft Remote Desktop, Remote Desktop Client, Windows 10, Windows Server 2016, and Windows Server 2019. It carries a high CVSS score of 8.8, indicating a network-exploitable vulnerability with low attack complexity that could lead to high confidentiality, integrity, and availability impacts. While there is no evidence of active exploitation or publicly available exploit code, the vulnerability has garnered significant community discussion and media coverage, suggesting notable attention from security researchers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:remote_desktop:-:*:*:*:*:-:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:remote_desktop:-:*:*:*:*:android:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:remote_desktop_client:-:*:*:*:*:windows:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* | ||
20h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.