UltraVNC 1.0.1 - Multiple Remote Error Logging Buffer Overflow Vulnerabilities (2)
Author: Luigi Auriemma
type: remote
platform: windows
port:
date_added: 2006-04-04
date_updated: 2013-08-23
verified: 1
codes: CVE-2006-1652;OSVDB-24456
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comUltraVnc-101-Setup.zip
source: https://www.securityfocus.com/bid/17378/info
UltraVNC is susceptible to multiple error-logging remote buffer-overflow vulnerabilities. These issues are due to the application's failure to properly bounds-check user-supplied input before copying it to insufficiently sized memory buffers.
A successful attack may allow remote attackers to execute arbitrary code on a vulnerable computer to gain unauthorized access in the context of the application.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/27569.zip