Show filters
255 Total Results
Displaying 231-240 of 255
Sort by:
Attacker Value
Unknown
CVE-2009-1929
Disclosure Date: August 12, 2009 (last updated December 08, 2023)
Heap-based buffer overflow in the Microsoft Terminal Services Client ActiveX control running RDP 6.1 on Windows XP SP2, Vista SP1 or SP2, or Server 2008 Gold or SP2; or 5.2 or 6.1 on Windows XP SP3; allows remote attackers to execute arbitrary code via unspecified parameters to unknown methods, aka "Remote Desktop Connection ActiveX Control Heap Overflow Vulnerability."
0
Attacker Value
Unknown
CVE-2008-1802
Disclosure Date: May 12, 2008 (last updated October 04, 2023)
Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified length fields.
0
Attacker Value
Unknown
CVE-2008-1801
Disclosure Date: May 12, 2008 (last updated October 04, 2023)
Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol (RDP) request with a small length field.
0
Attacker Value
Unknown
CVE-2007-2593
Disclosure Date: May 11, 2007 (last updated October 04, 2023)
The Terminal Server in Microsoft Windows 2003 Server, when using TLS, allows remote attackers to bypass SSL and self-signed certificate requirements, downgrade the server security, and possibly conduct man-in-the-middle attacks via unspecified vectors, as demonstrated using the Remote Desktop Protocol (RDP) 6.0 client. NOTE: a third party claims that the vendor may have fixed this in approximately 2006.
0
Attacker Value
Unknown
CVE-2007-1345
Disclosure Date: March 10, 2007 (last updated October 04, 2023)
Unspecified vulnerability in cube.exe in the GINA component for CA (Computer Associates) eTrust Admin 8.1.0 through 8.1.2 allows attackers with physical interactive or Remote Desktop access to bypass authentication and gain privileges via the password reset interface.
0
Attacker Value
Unknown
CVE-2006-4413
Disclosure Date: November 18, 2006 (last updated October 04, 2023)
Apple Remote Desktop before 3.1 uses insecure permissions for certain built-in packages, which allows local users on an Apple Remote Desktop administration system to modify the packages and gain root privileges on client systems that use the packages.
0
Attacker Value
Unknown
CVE-2006-4887
Disclosure Date: September 19, 2006 (last updated October 04, 2023)
Apple Remote Desktop (ARD) for Mac OS X 10.2.8 and later does not drop privileges on the remote machine while installing certain applications, which allows local users to bypass authentication and gain privileges by selecting the icon during installation. NOTE: it could be argued that the issue is not in Remote Desktop itself, but in applications that are installed while using it.
0
Attacker Value
Unknown
CVE-2005-1218
Disclosure Date: August 10, 2005 (last updated October 04, 2023)
The Microsoft Windows kernel in Microsoft Windows 2000 Server, Windows XP, and Windows Server 2003 allows remote attackers to cause a denial of service (crash) via crafted Remote Desktop Protocol (RDP) requests.
0
Attacker Value
Unknown
CVE-2005-1794
Disclosure Date: June 01, 2005 (last updated October 04, 2023)
Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which allows remote attackers to spoof public keys of legitimate servers and conduct man-in-the-middle attacks.
0
Attacker Value
Unknown
CVE-2005-0904
Disclosure Date: May 02, 2005 (last updated October 04, 2023)
Remote Desktop in Windows XP SP1 does not verify the "Force shutdown from a remote system" setting, which allows remote attackers to shut down the system by executing TSShutdn.exe.
0