4.6

CVE-2002-0971

Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" dialogue box.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Att ≫ Winvnc Server Version <= 3.3.3_r9
Att ≫ Winvnc Server Version 3.3.3_r7
Tightvnc ≫ Tightvnc Version 1.2.0
Tightvnc ≫ Tightvnc Version 1.2.1
Tightvnc ≫ Tightvnc Version 1.2.5
Tridia ≫ Tridiavnc Version 1.5
Tridia ≫ Tridiavnc Version 1.5.1
Tridia ≫ Tridiavnc Version 1.5.2
Tridia ≫ Tridiavnc Version 1.5.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.4% 0.312
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=102994289123085&w=2
http://www.iss.net/security_center/static/9979.php
http://www.securityfocus.com/bid/5530