Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via a .. (dot dot) in a pathname.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2011-05-24T23:00:00

Updated: 2011-09-07T09:00:00

Reserved: 2011-04-05T00:00:00


Link: CVE-2011-1595

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2011-05-24T23:55:02.917

Modified: 2013-04-05T03:01:01.693


Link: CVE-2011-1595

JSON object: View

cve-icon Redhat Information

No data.

CWE