4.6

CVE-2002-0971

Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" dialogue box.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AttWinvnc Server Version <= 3.3.3_r9
AttWinvnc Server Version3.3.3_r7
TightvncTightvnc Version1.2.0
TightvncTightvnc Version1.2.1
TightvncTightvnc Version1.2.5
TridiaTridiavnc Version1.5
TridiaTridiavnc Version1.5.1
TridiaTridiavnc Version1.5.2
TridiaTridiavnc Version1.5.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.09% 0.229
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P