What is CVE-2026-67295?
CVE-2026-67295 is a vulnerability in FreeRDP versions prior to 3.29.0, where improper validation of server-supplied RDPDR paths in drive redirection allows attackers to access sibling directories outside the configured shared root. A malicious RDP server can exploit this to read, write, delete, and enumerate files in adjacent directories, and users should update to FreeRDP 3.29.0 or later to mitigate the issue.
Azərbaycanca: CVE-2026-67295 FreeRDP-nin 3.29.0 versiyasından əvvəlki versiyalarında, server tərəfindən təqdim edilən RDPDR yollarının düzgün doğrulanmaması səbəbindən disk redireksiyasında zəiflikdir. Təcavüzkar RDP serveri bu qüsurdan istifadə edərək konfiqurasiya olunmuş paylaşılan kök qovluğundan kənarda qalan qonşu qovluqlardakı faylları oxuya, yaza, silə və siyahılaya bilər. Bu problemi aradan qaldırmaq üçün istifadəçilər FreeRDP-ni 3.29.0 və ya daha yuxarı versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
What can a malicious RDP server do by exploiting CVE-2026-67295?
A malicious RDP server can exploit this vulnerability to read, write, delete, and enumerate files in sibling directories outside the configured shared root.
Which version of FreeRDP should users update to in order to mitigate CVE-2026-67295?
Users should update to FreeRDP 3.29.0 or later to mitigate this issue.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.