vendor:
RealVNC
by:
Uz4yh4N
5.5
CVSS
MEDIUM
Remote Denial of Service
400
CWE
Product Name: RealVNC
Affected Version From: RealVNC 4.0
Affected Version To: RealVNC 4.0
Patch Exists: NO
Related CWE:
CPE: a:realvnc:realvnc:4.0
Platforms Tested: Windows XP, Windows 2000, Windows 98
Unknown
RealVNC Remote Denial of Service Vulnerability
RealVNC server is reported prone to a remote denial of service vulnerability. This issue presents itself when an attacker establishes a large amount connections to the server. The exploit code provided in the text is a simple program that creates multiple socket connections to the target server, causing it to become unresponsive or crash.
Mitigation:
Update RealVNC server to a patched version or use alternative remote desktop software.