CVE-2020-37132
MED 6.2UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in its password configuration properties that allows local attackers to crash the application. Attackers can paste an overly long 300-character string into the password field to trigger an application crash and prevent normal launcher functionality.
Affected Applications in Environment
4
UltraVNC
v1.2.2.4
21 devices
UltraVNC
v1.2.4.0
38 devices
UltraVNC
v1.1.9.0
1 device
UltraVNC
v1.2.2.3
1 device
Affected Devices
61
AIRPORT-SS2-01
Windows
CADLAB16
Windows
CIDI-VIDEOPC
Windows
DPCPD-0000000
Windows
DPCPD-1X970J3
Windows
DPCPD-311TZH3
Windows
DPCPD-32SBBY3
Windows
DPCPD-33Q9Q54
Windows
DPCPD-41V77D3
Windows
DPCPD-462PTW3
Windows
DPCPD-4X4LGY3
Windows
DPCPD-5JY72T2
Windows
DPCPD-6JTBCK3
Windows
DPCPD-CNZ6T34
Windows
DPCPD-DTJXRW3
Windows
DPCPD-G0ND9N2
Windows
DPCPD-HFMCVV3
Windows
DPCPD-HK5M793
Windows
DPCPD-HPKWRQ3
Windows
DPCPD-HSKYG24
Windows
DPCPD-JS6ZG24
Windows
DPCPD-UA7162673
Windows
DPCPD-XL52625K2
Windows
DPCPD-ZZA029533
Windows
DPINFT-FFFCSQ2
Windows
HAWKCONFBNR166
Windows
JLSCRA1909-01
Windows
JLSCSOC2101-01
Windows
KICCLICK-PC
Windows
LLCIT2103
Windows
MCC105INSTR
Windows
MCCAUTO2101-02
Windows
MCCAUTO2101-03
Windows
MCCAUTO2101-04
Windows
MCCCTE1901-03
Windows
MCCCTE2008-01
Windows
MCCWELD1904-01
Windows
MCCWELDINST
Windows
ONESTOPADV2101
Windows
ONSTFA1906-01
Windows
PIANOLAB1-1910
Windows
PIANOLAB2-1910
Windows
PIANOLAB4-1910
Windows
PIANOLAB5-1910
Windows
PIANOLAB6-1910
Windows
PIANOLAB7-1910
Windows
PIANOLAB8-1910
Windows
PIANOLAB9-1910
Windows
PURCH1810-02
Windows
RVS245FAC
Windows
RVSBUSN2103-01
Windows
RVSSAFE2105
Windows
RVSSCI2010-01
Windows
UPEL-P00118
Windows
USUEOUTDOORS
Windows
WIBMATH2001-01
Windows
WIBPOSCLT2007
Windows
WIBWL17-03
Windows
WIBWL17-04
Windows
WIBWL17-08
Windows
WIBWL17-09
Windows