Microsoft Releases Emergency Windows 11 Hotpatch to Fix Remote Code Execution Flaw
#1
Exclamation 
Quote:Microsoft has released an out-of-band hotpatch update, KB5084597, to fix three remote code execution vulnerabilities in the Windows Routing and Remote Access Service (RRAS) management tool. The update targets Windows 11 Enterprise devices enrolled in the hotpatch program that did not receive the fixes through the standard March 2026 Patch Tuesday cumulative update.

The three vulnerabilities are tracked as CVE-2026-25172, CVE-2026-25173, and CVE-2026-26111. All three were addressed in the March 10 Patch Tuesday release for standard Windows 11 devices.

How Attackers Can Exploit These RRAS Vulnerabilities

According to Microsoft's advisory, an attacker authenticated on the domain could exploit these flaws by tricking a domain-joined user into sending a request to a malicious server through the RRAS snap-in. Successful exploitation allows remote code execution on the affected device.

Microsoft states the issue applies only to Enterprise client devices running hotpatch updates and used for remote server management.

Continue Reading...
[-] The following 1 user says Thank You to harlan4096 for this post:
  • jasonX
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Forced bios update
Hey! I’ve run into s...BrynnD — 10:03
Surfshark VPN : Award-winning VPN servi...
Surfshark Apps Ver...jasonX — 07:34
Surfshark VPN : Award-winning VPN servi...
How to unblock block...jasonX — 07:11
K-Lite Codec Pack 19.6.8 / 19.6.8 Update
Changes in 19.6.8:...harlan4096 — 07:02
AdGuard for Windows 7.22.7
AdGuard for Window...harlan4096 — 07:01

[-]
Birthdays
Today's Birthdays
avatar (45)wapedDow
Upcoming Birthdays
avatar (51)steakelask
avatar (45)Termoplenka
avatar (43)bycoPaist
avatar (49)pieloKat
avatar (43)ilyagNeexy
avatar (51)donitascene
avatar (51)Toligo

[-]
Online Staff
There are no staff members currently online.

>