Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-28h2-7xq2-6cjf

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote Desktop Insecure Library Loading Vulnerability."

Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote Desktop Insecure Library Loading Vulnerability."

EPSS

Процентиль: 96%
0.29549
Средний

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
nvd
больше 14 лет назад

Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote Desktop Insecure Library Loading Vulnerability."

EPSS

Процентиль: 96%
0.29549
Средний

7.4 High

CVSS3