Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-30394

26
FAUCET Score

CVE-2025-30394 is a denial-of-service vulnerability affecting Microsoft Windows Server versions 2012 through 2025, stemming from sensitive data stored in improperly locked memory within the Remote Desktop Gateway Service. This medium-severity vulnerability (CVSS 5.9) can be exploited by an unauthenticated attacker over a network with high attack complexity, leading to a complete denial of service. While a recent article mentions its inclusion in Microsoft's May 2025 Patch Tuesday, there is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed on the CISA KEV catalog. Community discussion and media coverage are minimal, suggesting limited public awareness or active exploitation at this time.

Impacted Technologies

VendorProductVersion(s)CPE
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*
r2CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
< 10.0.14393.8066CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
< 10.0.17763.7314CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
< 10.0.20348.3692CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.9MEDIUM

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
21.03%
Probability of exploitation in next 30 days
EPSS Percentile
97.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.2103 is in the 98th percentile among its peer group of 19,958 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (17)

microsoftpatch availablevia msrc
Product: Windows Server 2012 R2 (Server Core installation)Fixed in: 6.3.9600.22577
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2019Fixed in: 10.0.17763.7314
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2019 (Server Core installation)Fixed in: 10.0.17763.7314
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2022Fixed in: 10.0.20348.3692
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2022 (Server Core installation)Fixed in: 10.0.20348.3692
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2022Fixed in: 10.0.20348.3630
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2025 (Server Core installation)Fixed in: 10.0.26100.4061
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2025Fixed in: 10.0.26100.4061
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2025 (Server Core installation)Fixed in: 10.0.26100.3981
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2025Fixed in: 10.0.26100.3981
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2022, 23H2 Edition (Server Core installation)Fixed in: 10.0.25398.1611
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2016Fixed in: 10.0.14393.8066
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2016 (Server Core installation)Fixed in: 10.0.14393.8066
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2012Fixed in: 6.2.9200.25475
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2012 (Server Core installation)Fixed in: 6.2.9200.25475
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2012 R2Fixed in: 6.3.9600.22577
View patch
microsoftvendor investigatingvia nvd_reference
View patch

Vendor Advisories (1)

microsoft2025-May/CVE-2025-30394Important

Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

May 13, 2025

References

msrc.microsoft.com / update-guide/vulnerability/CVE-2025-30394
Vendor Advisory