9.3
CVSSv2

CVE-2011-0029

Published: 09/03/2011 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote Desktop Insecure Library Loading Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft remote_desktop_connection_client 5.2

microsoft remote_desktop_connection_client 6.0

microsoft windows_2003_server

microsoft windows_server_2003

microsoft windows_xp -

microsoft remote_desktop_connection_client 7.0

microsoft windows_7 -

microsoft windows_server_2008 r2

microsoft remote_desktop_connection_client 6.1

microsoft windows_server_2008

microsoft windows_server_2008 -

microsoft windows_vista

microsoft windows_xp