PT-2016-6630 · Ultravnc · Ultravnc Repeater
Dan Tentler
+1
·
Published
2016-08-25
·
Updated
2016-11-28
·
CVE-2016-5673
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
UltraVNC Repeater versions prior to 1300
Description
The issue allows remote attackers to obtain open-proxy functionality. This is achieved by using a :: substring in between the IP address and port number, as the software does not restrict destination IP addresses or TCP ports.
Recommendations
For versions prior to 1300, restrict destination IP addresses and TCP ports to prevent open-proxy functionality. As a temporary workaround, consider restricting access to the repeater functionality until a patch is available.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ultravnc Repeater