Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.3
CVE-2026-55626
xrdp is an open source RDP server. In versions 0.10.6 and prior, when an authenticated user session is initialized using the Xvnc backend over UNIX d…
Xrdp
0.10.6.1+
MEDIUM 5.3
CVE-2026-55639
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the parsing of Client Security Data within the Client…
Xrdp
0.10.6.1+
MEDIUM 6.5
CVE-2026-55645
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP…
Xrdp
0.10.6.1+
MEDIUM 5.3
CVE-2026-55238
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of RDP Confirm Active PDU, where durin…
Xrdp
0.10.6.1+
HIGH 7.5
CVE-2026-54538
xrdp is an open source RDP server. In versions 0.10.6 and prior, a n issue was discovered where the software fails to properly validate the totalLeng…
Xrdp
0.10.6.1+
HIGH 8.8
CVE-2026-44178
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap-based buffer overflow vulnerability within the virtual channel forwarding…
Xrdp
0.10.6.1+
MEDIUM 5.3
CVE-2026-44978
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap out-of-bounds read vulnerability within the FIPS-specific receive paths. …
Xrdp
0.10.6.1+
CRITICAL 9.8
CVE-2026-41252
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp, which allows a heap-based buffer overflow when o…
Xrdp
0.10.6.1+
CRITICAL 9.1
CVE-2026-41521
xrdp is an open source RDP server. Versions 0.10.6 and prior contain an integer overflow vulnerability when processing screen update messages within …
Xrdp
0.10.6.1+
MEDIUM 5.3
CVE-2026-42218
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a timing side-channel vulnerability in the login interface. Due to a discrepancy…
Xrdp
0.10.6.1+
HIGH 8.8
CVE-2026-35512
xrdp is an open source RDP server. Versions through 0.10.5 have a heap-based buffer overflow in the EGFX (graphics dynamic virtual channel) implement…
Xrdp
0.10.6+
CRITICAL 9.1
CVE-2026-33689
xrdp is an open source RDP server. Versions through 0.10.5 have an out-of-bounds read vulnerability in the pre-authentication RDP message parsing log…
Xrdp
0.10.6+
MEDIUM 6.3
CVE-2026-33145
xrdp is an open source RDP server. Versions through 0.10.5 allow an authenticated remote user to execute arbitrary commands on the server due to unsa…
Xrdp
0.10.6+
CRITICAL 9.1
CVE-2026-33516
xrdp is an open source RDP server. Versions through 0.10.5 contain an out-of-bounds read vulnerability during the RDP capability exchange phase. The …
Xrdp
0.10.6+
MEDIUM 6.5
CVE-2026-32624
xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based buffer overflow vulnerability in its logon processing. In environment…
Xrdp
0.10.6+
HIGH 8.8
CVE-2026-32107
xrdp is an open source RDP server. In versions through 0.10.5, the session execution component did not properly handle an error during the privilege …
Xrdp
0.10.6+
HIGH 8.1
CVE-2026-32623
xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based buffer overflow vulnerability in the NeutrinoRDP module. When proxyin…
Xrdp
0.10.6+
HIGH 7.7
CVE-2026-32105
xrdp is an open source RDP server. In versions through 0.10.5, xrdp does not implement verification for the Message Authentication Code (MAC) signatu…
Xrdp
0.10.6+
CRITICAL 9.8
CVE-2024-39917
xrdp is an open source RDP server. xrdp versions prior to 0.10.0 have a vulnerability that allows attackers to make an infinite number of login attem…
Xrdp
0.10.0+
MEDIUM 6.5
CVE-2023-40184
xrdp is an open source remote desktop protocol (RDP) server. In versions prior to 0.9.23 improper handling of session establishment errors allows byp…
Xrdp
0.9.23+
HIGH 7.8
CVE-2020-4044
The xrdp-sesman service before version 0.9.13.1 can be crashed by connecting over port 3350 and supplying a malicious payload. Once the xrdp-sesman p…
Xrdp
0.9.13.1+
HIGH 7.3
CVE-2017-6967
xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with …
Xrdp
Patch available