A remote code execution and denial of service vulnerability in FreeRDP (CVE not specified) with a CVSS base score of 7.0 allows an anonymous attacker to execute arbitrary code. The vulnerability affects FreeRDP versions prior to 3.22.0, and a mitigation is available.
[WID-SEC-2026-2248] FreeRDP: Schwachstelle ermöglicht Codeausführung und Denial of Service CVSS Base Score 7.0 (hoch) CVSS Temporal Score 6.3 (mittel) Remoteangriff ja Datum 08.07.2026 Stand 09.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Windows Produktbeschreibung FreeRDP ist eine freie Implementierung des Remote Desktop Protocol (RDP). Produkte 08.07.2026 Open Source FreeRDP <3.22.0 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in FreeRDP ausnutzen, um beliebigen Programmcode auszuführen, und um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben