Untrusted search path vulnerability in UltraVNC 1.0.8.2 allows local users to gain privileges via a Trojan horse vnclang.dll file in the current working directory, as demonstrated by a directory that contains a .vnc file. NOTE: some of these details are obtained from third party information.
References
Link | Resource |
---|---|
http://secunia.com/advisories/41208 | Vendor Advisory |
http://web.archive.org/web/20100924002712/http://www.uvnc.com/download/ |
Configurations
Information
Published : 2012-09-07 03:32
Updated : 2012-09-07 10:20
NVD link : CVE-2010-5248
Mitre link : CVE-2010-5248
JSON object : View
CWE
Products Affected
ultravnc
- ultravnc