CVE-2026-61352
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized
CVSS
7.5
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 11, 2026 · Last modified: Aug 11, 2026 · CWE-362
Not enough EPSS history yet.
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-668028.1 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to execute code over a network.8hCVE-2026-629087.0 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.5hCVE-2026-628208.1 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to execute code over a network.7hCVE-2026-627807.0 HIG—
———Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.8hCVE-2026-627788.1 HIG—
———Use after free in Windows DNS allows an unauthorized attacker to elevate privileges over a network.5hCVE-2026-627487.0 HIG—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.5h