CVE-2025-58737General(microsoft / windows_server_2012)

LOWCVSS 7.0 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Use after free in Windows Remote Desktop allows an unauthorized attacker to execute code locally.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_server_2012
  • windows_server_2016
  • windows_server_2019
  • windows_server_2022

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
windows_server_2012windows_server_2016windows_server_2019windows_server_2022windows_server_2022_23h2windows_server_2025

1 version affected across 6 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-25: 103-25
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • Matt Van Bibber@mattvanbibber
    General

    @pjcolbeck Few more... hope they were patched 🤣 CVE-2025-58718 CVE-2025-58737 CVE-2025-59202 CVE-2025-60703 CVE-2026-21533

    Post summary

    The tweet briefly lists several CVE identifiers with a lighthearted note wishing they were patched, without providing technical details, exploits, or patch information.

    00020158
    1.4K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2022_23h2---
OSmicrosoftwindows_server_2025---

Explore more