CVE-2026-30798 - RustDesk Client Accepts Unauthenticated stop-service Command via Strategy Payload

CVE-2026-30798 - RustDesk Client Accepts Unauthenticated stop-service Command via Strategy Payload

CVE ID : CVE-2026-30798 Published : March 5, 2026, 4:16 p.m. | 1 hour, 20 minutes ago Description : Insufficient Verification of Data Authenticity, Improper Handling of Exceptional Conditions vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop, strategy processing modules) allows Protocol Manipulation. This vulnerability is associated with program files src/hbbs_http/sync.Rs and program routines stop-service handler in heartbeat loop. This issue affects RustDesk Client: through 1.4.5. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 5, 2026
Affected Product: Windows