- EPSS 0.01%
- Veröffentlicht 27.03.2026 17:16:31
- Zuletzt bearbeitet 29.04.2026 22:09:21
A security flaw has been discovered in UltraVNC up to 1.6.4.0. Affected by this issue is some unknown functionality in the library version.dll of the component Service. The manipulation results in uncontrolled search path. The attack needs to be appr...
- EPSS 0.01%
- Veröffentlicht 08.03.2026 23:02:06
- Zuletzt bearbeitet 29.04.2026 01:00:01
A weakness has been identified in UltraVNC 1.6.4.0 on Windows. This affects an unknown function in the library cryptbase.dll of the component Windows Service. This manipulation causes uncontrolled search path. The attack requires local access. A high...
CVE-2020-37134
- EPSS 0.01%
- Veröffentlicht 05.02.2026 16:13:36
- Zuletzt bearbeitet 15.04.2026 00:35:42
UltraVNC Viewer 1.2.4.0 contains a denial of service vulnerability that allows attackers to crash the application by manipulating VNC Server input. Attackers can generate a malformed 256-byte payload and paste it into the VNC Server connection dialog...
CVE-2020-37132
- EPSS 0.01%
- Veröffentlicht 05.02.2026 16:13:35
- Zuletzt bearbeitet 09.02.2026 22:08:53
UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in its password configuration properties that allows local attackers to crash the application. Attackers can paste an overly long 300-character string into the password field to tri...
CVE-2010-5248
- EPSS 0.06%
- Veröffentlicht 07.09.2012 10:32:22
- Zuletzt bearbeitet 29.04.2026 01:13:23
Untrusted search path vulnerability in UltraVNC 1.0.8.2 allows local users to gain privileges via a Trojan horse vnclang.dll file in the current working directory, as demonstrated by a directory that contains a .vnc file. NOTE: some of these details...
- EPSS 48.32%
- Veröffentlicht 04.02.2009 19:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code via a large length value in a m...
CVE-2008-5001
- EPSS 5.54%
- Veröffentlicht 10.11.2008 14:12:56
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple stack-based buffer overflows in multiple functions in vncviewer/FileTransfer.cpp in vncviewer for UltraVNC 1.0.2 and 1.0.4 before 01252008, when in LISTENING mode or when using the DSM plugin, allow remote attackers to cause a denial of serv...
CVE-2008-0610
- EPSS 74.83%
- Veröffentlicht 06.02.2008 12:00:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Stack-based buffer overflow in the ClientConnection::NegotiateProtocolVersion function in vncviewer/ClientConnection.cpp in vncviewer for UltraVNC 1.0.2 and 1.0.4 before 01252008, when in LISTENING mode or when using the DSM plugin, allows remote att...
- EPSS 0.78%
- Veröffentlicht 05.05.2006 12:46:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
The MS-Logon authentication scheme in UltraVNC (aka Ultr@VNC) 1.0.1 uses weak encryption (XOR) for challenge/response, which allows remote attackers to gain privileges by sniffing and decrypting passwords.