Improper Authentication in FreeRDP - #VU139936
Published: July 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass authentication.
The vulnerability exists due to improper authentication in the RDSTLS server authentication state machine in libfreerdp/core/rdstls.c when processing a credential-less Capabilities PDU at the authentication step. A remote attacker can send a credential-less Capabilities PDU instead of an Authentication Request to bypass authentication.
Only deployments with RDSTLS enabled are vulnerable.