VYPR

Repeater

by Ultravnc

CVEs (2)

  • CVE-2016-5673HigAug 25, 2016
    risk 0.49cvss 7.5epss 0.02

    UltraVNC Repeater before 1300 does not restrict destination IP addresses or TCP ports, which allows remote attackers to obtain open-proxy functionality by using a :: substring in between the IP address and port number.

  • CVE-2026-7839Jul 1, 2026
    risk 0.00cvss epss 0.00

    UltraVNC repeater through 1.8.2.2 initializes the HTTP administration server with a hardcoded default password. In repeater/webgui/settings.c:197, when settings2.txt is absent on first run the repeater writes the literal string "adminadmi2" as the admin password via…