CVE-2026-21525
Microsoft Windows NULL Pointer Dereference Vulnerability
Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.
MEDIUM · CVSS 6.2
⚠ CISA KEV
EPSS 0.09386
Act now
- Listed on CISA KEV (known exploited in the wild)
- SSVC exploitation status: active
- EPSS percentile: top 7% of all CVEs by exploitation likelihood
Sigma rules0
YARA rules0