Unrated severityNVD Advisory· Published Sep 24, 2002· Updated Apr 16, 2026
CVE-2002-0971
CVE-2002-0971
Description
Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" dialogue box.
Affected products
9cpe:2.3:a:att:winvnc_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:att:winvnc_server:*:*:*:*:*:*:*:*range: <=3.3.3_r9
- cpe:2.3:a:att:winvnc_server:3.3.3_r7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.