VYPR
Unrated severityNVD Advisory· Published Feb 5, 2026· Updated Feb 5, 2026

UltraVNC Launcher 1.2.4.0 - 'Password' Denial of Service

CVE-2020-37132

Description

UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in its password configuration properties that allows local attackers to crash the application. Attackers can paste an overly long 300-character string into the password field to trigger an application crash and prevent normal launcher functionality.

Affected products

2
  • Range: = 1.2.4.0
  • UltraVNC Team/UltraVNC Launcherv5
    Range: 1.2.4.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.