CVE-2020-37133: UltraVNC Launcher 1.2.4.0 - 'RepeaterHost' Denial of Service
UltraVNC Launcher 1.2.4.0 contains a denial of service vulnerability in the Repeater Host configuration field that allows attackers to crash the application. Attackers can paste an overly long string of 300 characters into the Repeater Host property to trigger an application crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-37133?
CVE-2020-37133 is classified as a denial of service vulnerability.
How do I fix CVE-2020-37133?
To mitigate CVE-2020-37133, ensure that input validation is implemented to limit the length of strings entered in the Repeater Host configuration field.
What software is affected by CVE-2020-37133?
CVE-2020-37133 affects UltraVNC Launcher version 1.2.4.0.
What type of attack does CVE-2020-37133 enable?
CVE-2020-37133 enables attackers to conduct a denial of service attack by crashing the application.
Is CVE-2020-37133 exploitable remotely?
Yes, CVE-2020-37133 can be exploited remotely by an attacker who inputs an excessively long string into the Repeater Host configuration.