Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9q4f-696q-fjxm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.

Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.

EPSS

Процентиль: 24%
0.00082
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.4
ubuntu
больше 5 лет назад

Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.

CVSS3: 4.4
nvd
больше 5 лет назад

Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.

CVSS3: 4.4
debian
больше 5 лет назад

Apache Guacamole 1.1.0 and older do not properly validate datareceived ...

EPSS

Процентиль: 24%
0.00082
Низкий

Дефекты

CWE-200