Friday, September 29, 2006

RealVNC remote administration unauthroized access

Published: 08.08.2006
Source: http://www.security.nnov.ru/source/FULL-DISCLOSURE.html
Type: remote
Level: 7/10
Description: Server doesn't check authentication type choosen by client is allowed.
Affected: REALVNC:RealVNC 4.1, LIBVNCSERVER:LibVNCServer 0.7, X11VNC:x11vnc 0.8

Files:
http://www.security.nnov.ru/files/VNC_bypauth-win32.rar
http://www.security.nnov.ru/files/VNC_bypauth-linux.tar.gz
http://www.security.nnov.ru/files/realvncscan.pl

0 Comments:

Post a Comment

<< Home