vendor:
UltraVNC Viewer
by:
chuyreds
7.8
CVSS
HIGH
Local
119
CWE
Product Name: UltraVNC Viewer
Affected Version From: 1.2.4.0
Affected Version To: 1.2.4.0
Patch Exists: YES
Related CWE: N/A
CPE: a:uvnc:ultravnc:1.2.4.0
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 Pro x64 es
2020
UltraVNC Viewer 1.2.4.0 – ‘VNCServer’ Denial of Service (PoC)
UltraVNC Viewer 1.2.4.0 is vulnerable to a denial of service attack when a maliciously crafted 'VNCServer' value is supplied. This can be exploited by an attacker to crash the application.
Mitigation:
Upgrade to the latest version of UltraVNC Viewer.