CVE-2025-66576

Remote Keyboard Desktop 1.0.1 enables remote attackers to execute system commands via the rundll32.exe exported function export, allowing unauthenticated code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:remotecontrolio:remote_keyboard_desktop:1.0.1:*:*:*:*:windows:*:*

History

17 Dec 2025, 16:21

Type Values Removed Values Added
First Time Remotecontrolio
Remotecontrolio remote Keyboard Desktop
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References () https://apps.microsoft.com/detail/9n0jw8v5sc9m?hl=neutral&gl=US&ocid=pdpshare - () https://apps.microsoft.com/detail/9n0jw8v5sc9m?hl=neutral&gl=US&ocid=pdpshare - Product
References () https://remotecontrolio.web.app/ - () https://remotecontrolio.web.app/ - Product
References () https://www.exploit-db.com/exploits/52299 - () https://www.exploit-db.com/exploits/52299 - Exploit
References () https://www.vulncheck.com/advisories/remote-keyboard-desktop-101-remote-code-execution-rce - () https://www.vulncheck.com/advisories/remote-keyboard-desktop-101-remote-code-execution-rce - Third Party Advisory
CPE cpe:2.3:a:remotecontrolio:remote_keyboard_desktop:1.0.1:*:*:*:*:windows:*:*

05 Dec 2025, 18:16

Type Values Removed Values Added
References () https://www.exploit-db.com/exploits/52299 - () https://www.exploit-db.com/exploits/52299 -

04 Dec 2025, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-04 21:16

Updated : 2025-12-17 16:21


NVD link : CVE-2025-66576

Mitre link : CVE-2025-66576

CVE.ORG link : CVE-2025-66576


JSON object : View

Products Affected

remotecontrolio

  • remote_keyboard_desktop
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')