7.5
CVSSv2

CVE-2019-8268

Published: 08/03/2019 Updated: 19/10/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of ClientConnection::ReadString function, which can potentially result code execution. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1207.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

uvnc ultravnc

siemens sinumerik access mymachine\\/p2p

siemens sinumerik pcu base win10 software\\/ipc

siemens sinumerik pcu base win7 software\\/ipc