vendor:
ultravnc_viewer
by:
Paul Haas
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: ultravnc_viewer
Affected Version From: 1.0.1
Affected Version To: 1.0.1
Patch Exists: YES
Related CWE: CVE-2009-0388
CPE: a:ultravnc:ultravnc_viewer
Metasploit:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
Ultr@VNC 1.0.1 Client Buffer Overflow
A buffer overflow vulnerability exists in Ultr@VNC 1.0.1 Client. An attacker can send a specially crafted packet to the VNC server port (5900) to trigger a buffer overflow and execute arbitrary code on the target system. This vulnerability was discovered by Luigi Auriemma and a proof-of-concept was developed by Paul Haas at Redspin.com. The exploit was tested on Windows XP SP2 and launches calc.exe.
Mitigation:
Upgrade to the latest version of Ultr@VNC Client.