High severity7.5NVD Advisory· Published Apr 20, 2018· Updated Jun 17, 2026
CVE-2018-10201
CVE-2018-10201
Description
An issue was discovered in NcMonitorServer.exe in NC Monitor Server in NComputing vSpace Pro 10 and 11. It is possible to read arbitrary files outside the root directory of the web server. This vulnerability could be exploited remotely by a crafted URL without credentials, with .../ or ...\ or ..../ or ....\ as a directory-traversal pattern to TCP port 8667.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
410 and 11+ 2 more
- (no CPE)range: 10 and 11
- cpe:2.3:a:ncomputing:vspace_pro:10:*:*:*:*:*:*:*
- cpe:2.3:a:ncomputing:vspace_pro:11:*:*:*:*:*:*:*
- Range: 10 and 11
Patches
Vulnerability mechanics
References
4- www.kwell.net/kwell_blog/nvdExploitThird Party Advisory
- www.exploit-db.com/exploits/44497/nvdExploitThird Party AdvisoryVDB Entry
- www.kwell.net/kwell/index.phpnvdThird Party Advisory
- support.ncomputing.com/portal/kb/articles/ncomputing-health-monitor-server-vulnerability-patchnvd
News mentions
0No linked articles in our index yet.