Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-78859
HistoryNov 18, 2022 - 12:00 a.m.

FreeRDP path traversal vulnerability

2022-11-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
freerdp
path traversal
vulnerability
path normalization
drive channel
shared directory
file reading

EPSS

0.001

Percentile

45.3%

FreeRDP is an open source implementation of the Remote Desktop Protocol (RDP) from the FreeRDP team. FreeRDP is vulnerable to a path traversal vulnerability that stems from a lack of path normalization and basic path checking for the “drive” channel. An attacker could use this vulnerability to read files outside of the shared directory.