VYPR

xrdp-sesman

by Neutrinolabs

Source repositories

CVEs (1)

  • CVE-2020-4044HigJun 30, 2020
    risk 0.42cvss 7.5epss 0.02

    The xrdp-sesman service before version 0.9.13.1 can be crashed by connecting over port 3350 and supplying a malicious payload. Once the xrdp-sesman process is dead, an unprivileged attacker on the server could then proceed to start their own imposter sesman service listening on…