CVE Vulnerabilities

CVE-2015-2473

Published: Aug 15, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Untrusted search path vulnerability in the client in Remote Desktop Protocol (RDP) through 8.1 in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka Remote Desktop Protocol DLL Planting Remote Code Execution Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Windows_7Microsoft–sp1 (including)–sp1 (including)
Windows_server_2008Microsoftr2-sp1 (including)r2-sp1 (including)

References