CVE-2019-9510 describes a vulnerability in Microsoft Windows 10 (version 1803+) and Windows Server 2019+ where an authenticated RDP client can bypass the lock screen of a remote system. If a temporary network disruption triggers an RDP automatic reconnection, the session will restore to an unlocked state, even if previously locked. This allows an attacker with client-side access to gain unauthorized access to the remote system. The vulnerability has a CVSS score of 7.8 (High), indicating a local attack vector with low complexity, requiring low privileges, and no user interaction, leading to high impacts on confidentiality, integrity, and availability. Its FAUCET Risk Score is 60/100, and it is categorized under CWE-288 (Authentication Bypass Using an Alternate Path) and CWE-755 (Improper Handling of Exceptional Conditions). While there is no evidence of active exploitation (not in KEV) and no public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community attention with 3 mentions and 2 media articles, suggesting awareness among security researchers and the public.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.