VYPR

Ultravnc

by Ultravnc

Source repositories

CVEs (43)

  • CVE-2010-5248Sep 7, 2012
    risk 0.00cvss epss 0.00

    Untrusted search path vulnerability in UltraVNC 1.0.8.2 allows local users to gain privileges via a Trojan horse vnclang.dll file in the current working directory, as demonstrated by a directory that contains a .vnc file. NOTE: some of these details are obtained from third…

  • CVE-2008-5001Nov 10, 2008
    risk 0.00cvss epss 0.06

    Multiple stack-based buffer overflows in multiple functions in vncviewer/FileTransfer.cpp in vncviewer for UltraVNC 1.0.2 and 1.0.4 before 01252008, when in LISTENING mode or when using the DSM plugin, allow remote attackers to cause a denial of service (crash) and possibly…

  • CVE-2006-2206May 5, 2006
    risk 0.00cvss epss 0.02

    The MS-Logon authentication scheme in UltraVNC (aka Ultr@VNC) 1.0.1 uses weak encryption (XOR) for challenge/response, which allows remote attackers to gain privileges by sniffing and decrypting passwords.

Page 3 of 3