Lucene search

K

Remote Mini Control Security Vulnerabilities

cve
cve

CVE-2019-3955

Dameware Remote Mini Control version 12.1.0.34 and prior contains a unauthenticated remote heap overflow due to the server not properly validating RsaPubKeyLen during key negotiation. An unauthenticated remote attacker can cause a heap buffer overflow by specifying a large RsaPubKeyLen, which could...

7.5CVSS

7.8AI Score

0.01EPSS

2019-06-07 08:29 PM
134
cve
cve

CVE-2019-3956

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating CltDHPubKeyLen during key negotiation, which could crash the application or leak sensitive information.

7.4CVSS

8.2AI Score

0.004EPSS

2019-06-07 09:29 PM
220