4.6

CVE-2002-0971

Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" dialogue box.

Data is provided by the National Vulnerability Database (NVD)
AttWinvnc Server Version <= 3.3.3_r9
AttWinvnc Server Version3.3.3_r7
TightvncTightvnc Version1.2.0
TightvncTightvnc Version1.2.1
TightvncTightvnc Version1.2.5
TridiaTridiavnc Version1.5
TridiaTridiavnc Version1.5.1
TridiaTridiavnc Version1.5.2
TridiaTridiavnc Version1.5.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.09% 0.229
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P