Remote Keyboard Desktop RCE

CRITICAL (9.8) No Patch (13 days)

Threat Intelligence

Low Risk
EPSS Score: 0.46% chance of exploitation (percentile: 63%)
🔍 Detection Tools: None available in major open-source tools
⚔️ Exploit Availability: No public exploits found

How we test →

What is it?

Remote Keyboard Desktop is a remote desktop application that allows users to access and control their computers from another device. This vulnerability allows attackers to execute system commands via the rundll32.exe exported function export, allowing unauthenticated code execution.

Am I affected?

You're affected if you use Remote Keyboard Desktop version 1.0.1. Check with: dir /b remotekbd.exe (for Windows) or find . -name remotekbd (for Linux/Mac). Note that this vulnerability is specific to the Remote Keyboard Desktop application and not related to other remote desktop software.

Affected Products

Microsoft / Remote Keyboard Desktop

How to fix

Upgrade to version 1.0.2 or later from the official website: https://remotekbd.com/download/
- Immediate mitigations:
- Restrict network access to your Remote Keyboard Desktop instance (firewall it from the public internet)
- Audit admin account activity for suspicious access patterns
- Monitor for unauthorized token creation