CVE-2024-39917
- EPSS 0.1%
- Published 12.07.2024 16:15:04
- Last modified 21.11.2024 09:28:33
xrdp is an open source RDP server. xrdp versions prior to 0.10.0 have a vulnerability that allows attackers to make an infinite number of login attempts. The number of max login attempts is supposed to be limited by a configuration parameter `MaxLog...
CVE-2023-42822
- EPSS 0.34%
- Published 27.09.2023 18:15:11
- Last modified 10.04.2025 20:44:22
xrdp is an open source remote desktop protocol server. Access to the font glyphs in xrdp_painter.c is not bounds-checked . Since some of this data is controllable by the user, this can result in an out-of-bounds read within the xrdp executable. The v...
CVE-2023-40184
- EPSS 0.07%
- Published 30.08.2023 18:15:09
- Last modified 11.04.2025 14:48:35
xrdp is an open source remote desktop protocol (RDP) server. In versions prior to 0.9.23 improper handling of session establishment errors allows bypassing OS-level session restrictions. The `auth_start_session` function can return non-zero (1) value...
CVE-2022-23493
- EPSS 0.26%
- Published 09.12.2022 18:15:17
- Last modified 21.11.2024 06:48:40
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Out of Bound Read in xrdp_mm_trans_process_drdynvc_channel_close() function. There are no known...
CVE-2022-23484
- EPSS 0.19%
- Published 09.12.2022 18:15:17
- Last modified 21.11.2024 06:48:39
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Integer Overflow in xrdp_mm_process_rail_update_window_text() function. There are no known work...
CVE-2022-23483
- EPSS 0.25%
- Published 09.12.2022 18:15:16
- Last modified 21.11.2024 06:48:39
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Out of Bound Read in libxrdp_send_to_channel() function. There are no known workarounds for thi...
CVE-2022-23482
- EPSS 0.16%
- Published 09.12.2022 18:15:16
- Last modified 21.11.2024 06:48:39
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Out of Bound Read in xrdp_sec_process_mcs_data_CS_CORE() function. There are no known workaroun...
CVE-2022-23481
- EPSS 0.19%
- Published 09.12.2022 18:15:16
- Last modified 21.11.2024 06:48:39
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a Out of Bound Read in xrdp_caps_process_confirm_active() function. There are no known workaround...
CVE-2022-23480
- EPSS 0.19%
- Published 09.12.2022 18:15:15
- Last modified 21.11.2024 06:48:38
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in devredir_proc_client_devlist_announce_req() function. There are no known wo...
CVE-2022-23479
- EPSS 0.19%
- Published 09.12.2022 18:15:14
- Last modified 21.11.2024 06:48:38
xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 contain a buffer over flow in xrdp_mm_chan_data_in() function. There are no known workarounds for this is...