CVE-2023-24905: Microsoft Windows 10 20h2

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Remote Desktop Client Remote Code Execution Vulnerability

Affected products

  • Microsoft Windows 10 20h2: before 10.0.19042.2965 (fixed in 10.0.19042.2965)
  • Microsoft Windows 10 21h2: before 10.0.19044.2965 (fixed in 10.0.19044.2965)
  • Microsoft Windows 10 22h2: before 10.0.19045.2965 (fixed in 10.0.19045.2965)
  • Microsoft Windows 11 21h2: before 10.0.22000.1936 (fixed in 10.0.22000.1936)
  • Microsoft Windows 11 22h2: before 10.0.22000.1702 (fixed in 10.0.22000.1702)

Published 2023-05-09. Last modified 2026-06-17.