7.5
CVSSv3

CVE-2016-5673

Published: 25/08/2016 Updated: 28/11/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

UltraVNC Repeater prior to 1300 does not restrict destination IP addresses or TCP ports, which allows remote malicious users to obtain open-proxy functionality by using a :: substring in between the IP address and port number.

Vulnerable Product Search on Vulmon Subscribe to Product

ultravnc repeater

Github Repositories

Stargate

CVE-2016-5673: Ultr@VNC Repeater ============= This repository contains the POCs for CVE-2016-5673 This vulnerability was published at our talk at DEFCON 24 in 2016: wwwdefconorg/html/defcon-24/dc-24-speakershtml#Klijnsma Timeline: Vulnerability discovered: February 13th 2016 Vulnerability reported: April 21st 2016 Vulnerability fixed in version 130 released aroun