Security Advisory

CVE-2011-1595

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-05-24 23:00:00
Last updated 2024-08-06 22:28:42
Assigner redhat
State PUBLISHED

Description

Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via a .. (dot dot) in a pathname.