vendor:
UltraVNC
by:
Luigi Auriemm
7.5
CVSS
HIGH
Remote Buffer Overflow
119
CWE
Product Name: UltraVNC
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2
UltraVNC Remote Buffer Overflow Vulnerabilities
UltraVNC is susceptible to multiple error-logging remote buffer-overflow vulnerabilities. These issues are due to the application's failure to properly bounds-check user-supplied input before copying it to insufficiently sized memory buffers. A successful attack may allow remote attackers to execute arbitrary code on a vulnerable computer to gain unauthorized access in the context of the application.
Mitigation:
Apply the latest security patches or updates provided by the vendor. Avoid using vulnerable versions of UltraVNC.