Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.145246
Category:Web application abuses
Title:Apache Guacamole <= 1.2.0 Information Disclosure Vulnerability
Summary:Apache Guacamole is prone to an information disclosure vulnerability.
Description:Summary:
Apache Guacamole is prone to an information disclosure vulnerability.

Vulnerability Insight:
Apache Guacamole does not consistently restrict access to connection
history based on user visibility. If multiple users share access to the same connection, those users may be
able to see which other users have accessed that connection, as well as the IP addresses from which that
connection was accessed, even if those users do not otherwise have permission to see other users.

Affected Software/OS:
Apache Guacamole version 1.2.0 and prior.

Solution:
Update to version 1.3.0 or later.

CVSS Score:
4.0

CVSS Vector:
AV:N/AC:L/Au:S/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2020-11997
https://lists.apache.org/thread.html/r1a9ae9d1608c9f846875c4191cd738f95543d1be06b52dc1320e8117%40%3Cannounce.guacamole.apache.org%3E
CopyrightCopyright (C) 2021 Greenbone Networks GmbH

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.