Tag
critical
advisory
CVE-2025-68670: xrdp Pre-Authentication Remote Code Execution
2 rules 1 TTP 1 CVEA pre-authentication remote code execution vulnerability exists in xrdp versions prior to 0.10.5, triggered by a buffer overflow in the xrdp_wm_parse_domain_information function when parsing a specially crafted domain name, allowing attackers to overwrite the return address and execute arbitrary code.
Kaspersky USB Redirector +2
rce
xrdp
cve-2025-68670
remote-desktop
linux
2r
1t
1c
high
advisory
xrdp Privilege Escalation Vulnerability (CVE-2026-32107)
2 rules 2 TTPs 1 CVExrdp versions through 0.10.5 are vulnerable to a privilege escalation flaw (CVE-2026-32107) where improper privilege management during the privilege drop process could allow an authenticated local attacker to escalate privileges to root and execute arbitrary code.
xrdp
privilege-escalation
cve-2026-32107
linux
2r
2t
1c