apache guacamole CVE-2020-9498 vulnerability in Apache and Other Products
Published on July 2, 2020

product logo product logo product logo
Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious or compromised RDP server, a series ofspecially-crafted PDUs could result in memory corruption, possiblyallowing arbitrary code to be executed with the privileges of therunning guacd process.

Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2020-9498

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2020-9498 are published in these products:

 
 
 

Exploit Probability

EPSS
0.11%
Percentile
28.94%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.