Eugene Kaspersky[verified]@e_kasperskyPatch
The text reports that CVE-2025-68670 is a buffer overflow in xrdp capable of remote code execution, and notes that the flaw has already been fixed in the latest releases.
Nicolas Krassas[verified]@DinosnDisclosure
CVE-2025-68670 is a newly discovered RCE vulnerability in xrdp, with no PoC, exploit details, or active exploitation mentioned in the provided text.
Vivek | Cybersecurity[verified]@VivekIntelDisclosure
The article announces CVE-2025-68670, noting it is an RCE flaw in the xrdp server. No additional details on PoC, exploitation, or patching are provided.
Евгений Касперский[verified]@e_kaspersky_ruDisclosure
Russian security researchers identified CVE‑2025‑68670 in the xrdp RDP server as a buffer overflow that could allow unauthenticated remote code execution, and note that the issue is already fixed in current releases.
DFIR Radar[verified]@DFIR_RadarDisclosure
The post announces a critical RCE vulnerability in xrdp enabling stack buffer overflow via crafted UTF‑16 domain names, details the technical mechanism, and urges immediate patching to fixed versions.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
CVE-2025-68670 is actively exploited to obtain unauthenticated RCE on xrdp servers, with attackers escalating privileges and moving laterally, but no PoC, exploit code, or patch information is provided.
ThreadLinqs[verified]@threadlinqsActive Exploitation
Threat intel reports that CVE-2025-68670 delivers a pre‑authentication RCE in xrdp <0.10.5 via a buffer overflow, with nine detections and eighteen IOCs indicating active exploitation, but no PoC, exploit, patch, or false‑positive notes are provided.
✪ 𝕱𝖆𝖍𝖆𝖉[verified]@fad_777Disclosure
A new CVE-2025-68670 remote code execution vulnerability in xrdp is disclosed, highlighting the importance of security audits; the text does not provide exploitation or patch details.