Lucene search

K
nvd[email protected]NVD:CVE-2002-0971
HistorySep 24, 2002 - 4:00 a.m.

CVE-2002-0971

2002-09-2404:00:00
web.nvd.nist.gov

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the “Add new clients” dialogue box.

Affected configurations

NVD
Node
attwinvnc_serverRange3.3.3_r9
OR
attwinvnc_serverMatch3.3.3_r7
OR
tightvnctightvncMatch1.2.0
OR
tightvnctightvncMatch1.2.1
OR
tightvnctightvncMatch1.2.5
OR
tridiatridiavncMatch1.5
OR
tridiatridiavncMatch1.5.1
OR
tridiatridiavncMatch1.5.2
OR
tridiatridiavncMatch1.5.4

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for NVD:CVE-2002-0971