CVE-2026-21533 | Microsoft Windows up to Server 2025 Remote Desktop Services privileges management
A vulnerability was found in Microsoft Windows. It has been declared as critical. Affected by this issue is some unknown functionality of the component Remote Desktop Services. Such manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2026-21533. Local access is required to approach this attack. No exploit exists.
It is best practice to apply a patch to resolve this issue.