CVE-2026-44178Neutrinolabs · Xrdp
Vulnerability data via NVD (ingested)
xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap-based buffer overflow vulnerability within the virtual channel forwarding mechanism. When forwarding data from a remote client to the internal channel server, the xrdp process utilizes a fixed-size buffer without adequate bounds checking on the incoming payload. An authenticated remote attacker can exploit this flaw by sending a specially crafted virtual channel message that exceeds the buffer capacity, leading to heap memory corruption. This may result in a denial of service or the execution of arbitrary code with the privileges of the xrdp process. This issue has been fixed in version 0.10.6.1.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2026-44178product:"Neutrinolabs Xrdp"http.html:"Xrdp"More intel sources (5)
vuln:CVE-2026-44178vulnerabilities.cve_id: CVE-2026-44178CVE-2026-44178CVE-2026-44178"CVE-2026-44178" exploit -site:nvd.nist.gov