PT-2026-6577 · Realvnc · Ultravnc Launcher

Chuyreds

·

Published

2026-02-05

·

Updated

2026-02-05

·

CVE-2020-37133

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions UltraVNC Launcher version 1.2.4.0
Description The software contains a denial of service issue in the Repeater Host configuration field. An attacker can cause the application to crash by providing an overly long string, specifically 300 characters, to the Repeater Host property. The vulnerable configuration field is the RepeaterHost property.
Recommendations Update to a newer version that contains a fix for this vulnerability. As a temporary workaround, avoid using or limit the length of input in the RepeaterHost property.

Exploit

Fix

DoS

Stack Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2020-37133

Affected Products

Ultravnc Launcher