CVE-2025-30394CWE-591

Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

Medium · published May 13, 2025

CVSS v3.1
5.9
EPSS
30%
Percentile
98.1
In the wild
Unconfirmed
What it is

Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to deny service over a network.

The record
Technical detail
CVSS v3.1
5.9 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
CVSS v4.0
Not supplied
EPSS
0.30495 · 98.1th percentile
Weakness
CWE-591 · Sensitive Data Storage in Improperly Locked Memory
Published
2025-05-13T16:58Z
EPSS history
Timeline
  • 13 MAY 16:58Z
    Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
    cvelistv5