CVE-2001-1422
N/A
N/A
Summary
WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by sniffing the challenge and response of other users.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/2275
- http://www.kb.cert.org/vuls/id/303080
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5992
- http://www1.corest.com/common/showdoc.php?idxseccion=10&idx=117
References
- http://www.securityfocus.com/bid/2275
- http://www.kb.cert.org/vuls/id/303080
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5992
- http://www1.corest.com/common/showdoc.php?idxseccion=10&idx=117
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.